DEV Community

Ofri Peretz profile picture

Ofri Peretz

IC5/M2 Leader @ Snappy US. Building revenue APIs & AI-ready ESLint plugins. Expert in distributed teams, scalable infra, and fostering a culture of craftsmanship.

Education

CS

Work

Engineering Manager @ Snappy | Open Source Developer | ESLint for AI tools

I Let Claude Write 60 Functions. 65-75% Had Security Vulnerabilities.

I Let Claude Write 60 Functions. 65-75% Had Security Vulnerabilities.

Comments
9 min read

Want to connect with Ofri Peretz?

Create an account to connect with Ofri Peretz. You can also sign in below to proceed if you already have an account.

Already have an account? Sign in
Exploit Analysis: PostgreSQL COPY FROM Filesystem Access

Exploit Analysis: PostgreSQL COPY FROM Filesystem Access

Comments
4 min read
The Performance Protocol: Solving PostgreSQL N+1 Loops via Static Analysis

The Performance Protocol: Solving PostgreSQL N+1 Loops via Static Analysis

1
Comments 3
3 min read
Exploit Analysis: search_path Hijacking (The Hidden PostgreSQL Attack)

Exploit Analysis: search_path Hijacking (The Hidden PostgreSQL Attack)

Comments
2 min read
Securing Middleware: The Express.js Static Analysis Standard

Securing Middleware: The Express.js Static Analysis Standard

Comments
3 min read
Architectural Security: The NestJS Static Analysis Standard

Architectural Security: The NestJS Static Analysis Standard

Comments
3 min read
Serverless Security: The AWS Lambda Static Analysis Standard

Serverless Security: The AWS Lambda Static Analysis Standard

Comments
4 min read
Frontend Protection: The Browser Static Analysis Standard

Frontend Protection: The Browser Static Analysis Standard

Comments
2 min read
Zero-Trust Auth: The JWT Static Analysis Standard

Zero-Trust Auth: The JWT Static Analysis Standard

Comments
3 min read
Runtime Security at Scale: The Node.js Static Analysis Standard

Runtime Security at Scale: The Node.js Static Analysis Standard

Comments
2 min read
Performance at Scale: The Static Analysis Standard for 100x Faster Linting

Performance at Scale: The Static Analysis Standard for 100x Faster Linting

Comments
2 min read
Hardening AI Agents: The Vercel AI Static Analysis Standard

Hardening AI Agents: The Vercel AI Static Analysis Standard

Comments
3 min read
Post-Mortem: Race Conditions in PostgreSQL Pools (And the Guard)

Post-Mortem: Race Conditions in PostgreSQL Pools (And the Guard)

Comments
3 min read
Post-Mortem: The Connection Leak Outage (And the Static Analysis Standard)

Post-Mortem: The Connection Leak Outage (And the Static Analysis Standard)

Comments
3 min read
Automated Compliance: The Secure Coding Static Analysis Standard

Automated Compliance: The Secure Coding Static Analysis Standard

Comments
3 min read
Hardening the Data Layer: The node-postgres Static Analysis Standard

Hardening the Data Layer: The node-postgres Static Analysis Standard

Comments
3 min read
The OWASP Compliance Protocol: Mapping 247 Static Analysis Rules

The OWASP Compliance Protocol: Mapping 247 Static Analysis Rules

1
Comments
8 min read
The Security Engineering Blueprint: A JavaScript Master Document

The Security Engineering Blueprint: A JavaScript Master Document

Comments
4 min read
Exploit Analysis: The JWT Algorithm 'none' Attack (And the Guard)

Exploit Analysis: The JWT Algorithm 'none' Attack (And the Guard)

1
Comments
4 min read
Vulnerability Case Study: Prompt Injection in Vercel AI Agents

Vulnerability Case Study: Prompt Injection in Vercel AI Agents

Comments
3 min read
Hardening the Data Layer: The node-postgres Engineering Standard

Hardening the Data Layer: The node-postgres Engineering Standard

Comments
2 min read
The Secret Management Standard: Automating AI Agent Protection

The Secret Management Standard: Automating AI Agent Protection

Comments
2 min read
Post-Mortem: Why ESLint Performance Failed (And the 100x Fix)

Post-Mortem: Why ESLint Performance Failed (And the 100x Fix)

Comments
2 min read
Benchmark Report: Why Most Security Linters Miss 80% of Vulnerabilities

Benchmark Report: Why Most Security Linters Miss 80% of Vulnerabilities

Comments
6 min read
The AI Security Protocol: Hardening Vercel AI SDK Agents

The AI Security Protocol: Hardening Vercel AI SDK Agents

Comments
3 min read
The OWASP LLM Protocol: 100% Automated Coverage for Vercel AI

The OWASP LLM Protocol: 100% Automated Coverage for Vercel AI

Comments
4 min read
Hardening AI Agents: The Vercel AI Static Analysis Standard

Hardening AI Agents: The Vercel AI Static Analysis Standard

Comments
2 min read
loading...