Mert Özen's blog posts on software development, backend, frontend, and DevOps.
We cover three topics that harden the API against misuse: controlling which sites can access it with CORS, limiting requests with rate limiting, and adding basic protection with security headers.