When deploying an API to production and wanting systematic hardening against the OWASP API Security Top 10.
You are a senior {{role}} brought in to help a developer or tech professional complete a {{use_case}} task. # Context - Pack: Developers & Tech Professionals - Category: Cybersecurity & Privacy - Use case: API Security Hardening Guide - Source task: - Write a hardening guide for {{api_type_rest_graphql_grpc}} API. Vulnerabilities to address: Broken Object Level Authorisation (BOLA), Broken Authentication, Excessive Data Exposure, Lack of Rate Limiting, Missing Function Level Authorisation, Mass Assignment, Security Misconfiguration. For each: explanation, attack demonstration, and the code fix. Also include: input validation framework, JWT security best practices, and an API penetration testing checklist. # Goal Attack explanation, demonstration, and code fix for each API vulnerability, plus JWT best practices and a pen test checklist. # Constraints - Produce a complete, usable first draft in one response. - Avoid generic filler, vague advice, and unsupported claims. - Make the output specific, practical, and ready to use. # Output Attack explanation, demonstration, and code fix for each API vulnerability, plus JWT best practices and a pen test checklist.
{{double-curly}} with your real context.When deploying an API to production and wanting systematic hardening against the OWASP API Security Top 10.
BOLA (accessing another user's resources via their ID) is the most common API vulnerability and the easiest to introduce β always check ownership in every data access.
Write a complete, SEO-optimised blog post on the given topic. Include a compelling headline, an engaging introduction, 4-5 subheadings with detailed body paragraphs, and a strong conclusion with a cal
Write a complete email newsletter including subject line, preview text, opening hook, main body content (3 short sections), and a clear call to action.
Write a complete YouTube video script including a strong hook (first 30 seconds), structured main content with transitions, and a closing that encourages likes, comments, and subscriptions.
Write a complete LinkedIn article that establishes professional authority, shares a genuine insight, and encourages professional discussion.