Security
Security
Last updated: March 2, 2026
Security is treated as a baseline requirement for this blog.
Current controls
- HTTPS in production
- Request rate limiting at the application layer
- Security response headers
- Payload size limits for request bodies
- Structured request logging for incident analysis
Responsible disclosure
If you find a vulnerability, report it privately using the contact channels at https://guhhammer.dev/.
Please avoid public disclosure before a fix is deployed.