Logo
Search
Login
Sign Up
Logo

Archive

Dive into a collection of past posts and rediscover timeless content.
OAuth Token Storage: Securing Third-Party Credentials in Multi-Tenant SaaS

OAuth Token Storage: Securing Third-Party Credentials in Multi-Tenant SaaS

A secure pattern for storing, refreshing, and using customer OAuth credentials

Apr 15, 2026

Designing API Idempotency Keys to Prevent Duplicate Writes

Designing API Idempotency Keys to Prevent Duplicate Writes

How to prevent duplicate writes, partial-failure bugs, and replayed side effects

Apr 8, 2026

Threat Modeling RAG Access Control

Threat Modeling RAG Access Control

A practical threat model for tenant isolation, ACL propagation, revocation, and query-time filtering

Apr 1, 2026

Secure Webhook Delivery: Signing, Verification, and SSRF Prevention

Secure Webhook Delivery: Signing, Verification, and SSRF Prevention

A practical pattern for sender controls, receiver verification, and outbound request safety

Mar 25, 2026

The AI Agent Attack Surface: Tools, Loops, and Memory

The AI Agent Attack Surface: Tools, Loops, and Memory

Threat models and safe defaults for tool execution, autonomous loops, and persistent memory in AI agents

Mar 18, 2026

Load more

Secure Patterns

Patterns for building secure products and scalable security platforms

© 2026 Secure Patterns.
beehiivPowered by beehiiv