Menu

Post image 1
Post image 2
Post image 3
Post image 4
1 / 4
0

A Chinese language teacher gave his API a 'physical examination': I ran 10 security tests using Postman and passed 9.5 of them

DEV Community·xiaoqiangapi·about 1 month ago
#gx4lnGvI
Reading 0:00
15s threshold

Hello everyone, I'm @xiaoqiangapi , a Chinese teacher who has been teaching Chinese for over a decade. Yes, that's the one who, because of one sentence from a student, forced himself to build an API gateway from scratch. In the previous article, I tested the overseas latency speeds of DeepSeek, Zhipu, and MiniMax. But you will surely have questions: "Is your API secure?" "Will the Key leak?" "Will the data be intercepted by a man-in-the-middle?" I wasn't in a hurry to answer. Because I'm not a security expert. I'm just a beginner who has just learned to use Postman, a former Chinese teacher who only started learning API transit at nearly 0 years old. But I decided to use the stupidest method: test one item at a time and write down the results honestly. I used only two tools: Windows' built-in curl No fancy scanner, no professional security platform. I believe plain tests are more persuasive than pretty ads. What am I going to test?…

Continue reading — create a free account

Join HashtagPLUS to read full articles, follow hashtags, vote, and join the conversation.

Read More