Don Cristos

2.1K posts

Don Cristos

Don Cristos

@CristosDon

Full stack web developer: JavaScript (reactjs nodejs), PHP (Laravel)🌞🌞 HTML 🌞🌞CSS. And fast learning always derived with curiosity to learn and team work.

Lagos, Nigeria Katılım Nisan 2018
1.1K Takip Edilen396 Takipçiler
Sabitlenmiş Tweet
Don Cristos
Don Cristos@CristosDon·
Devs who get clients on Upwork/Fiverr what actually worked for you? I’ve had accounts since 2020 but never landed a client. Now I’m actively job hunting and want to do this right. Any advice, templates, or lessons would help 🙏
English
0
1
1
80
Don Cristos
Don Cristos@CristosDon·
3️⃣ Anonymize: Keep financial records for tax, but scrub PII. Distributed systems require distributed cleanup. 🛠️ #SaaS #Backend #SystemDesign
English
0
0
0
2
Don Cristos
Don Cristos@CristosDon·
Handling SaaS user deletion is more than just DELETE FROM users. My go-to: 1️⃣ Soft Delete: Set deleted_at for immediate deactivation + 30-day recovery. 2️⃣ Event-Driven: Emit UserDeleted event to clean up microservices (S3, Billing, Auth).
English
1
0
0
6
Don Cristos
Don Cristos@CristosDon·
@Akintola_steve Redis, database jwt. Store the session on the database use redis for quick access catching,
English
0
0
0
43
Akintola Steve
Akintola Steve@Akintola_steve·
Quick one: When designing an auth system, where would you store sessions? Redis? Database? JWT-only stateless approach?
English
26
4
60
5.1K
Andrew Dev
Andrew Dev@just_andydev·
Most people sleep on Reddit as a job hunting tool. Figure out how it works and you will never struggle to find remote work again. Bookmark these subreddits.
English
4
4
28
869
Don Cristos
Don Cristos@CristosDon·
@MrOlibaba Hmm Wait let me get they don't pay or they have bad culture
English
0
0
0
239
UNCLE
UNCLE@MrOlibaba·
I did three months with Moniepoint and resigned... I resigned and I'm not proud enough to have it on my CV. Moniepoint employee relations and welfare doesn't equate the hype they move with.
English
310
2.6K
13.4K
678.6K
Jonathan
Jonathan@joni_vrbt·
If you simply enjoy to build amazing projects, let's connect.
English
89
4
160
6.8K
Don Cristos
Don Cristos@CristosDon·
Good morning Happy Sunday 😄☺️ Let's go to church to commit the week to God for more blessings
English
0
0
0
4
Don Cristos
Don Cristos@CristosDon·
@just_andydev Oo yes as a file but we can write logic to exclude . Env files from the project or specifically informed AI not to include it. But it's a security flaw that needs to be addressed
English
0
0
1
38
Andrew Dev
Andrew Dev@just_andydev·
@CristosDon This vulnerability goes beyond that. I've tested this after I made the tweet I ask claude to create a project and they all had the .env file passed to the frontend container. It's a major security flaw
English
1
0
1
242
Andrew Dev
Andrew Dev@just_andydev·
AI is building insecure apps and founders are paying for it. Literally. I just spent 10 hours debugging a client's AWS server. They got a $3000 bill because of a vulnerability AI introduced and never flagged. If you are running Next.js and Docker, do this right now. 1. Check if you are on Next.js below version 16.2.4 2. Confirm with your dev if your entire .env file is being passed to Next.js via Docker 3. Ask AI to scan your project for RSC vulnerabilities that allow attackers to access your nextjs server This is especially critical if AI built your project or you are vibe coding. LLMs are backdated. They do not always use the latest, most secure versions. If AI created your containers, ask it to check for RSC vulnerabilities immediately. If the vulnerability exists, rotate all your env files and consider taking the server down entirely. Everything on a compromised server should be treated as exposed. Do not wait.
English
12
26
184
17.2K
Don Cristos
Don Cristos@CristosDon·
@CaptainInsightX With my years of experience checking logs first to get the actual error but timeouts are usually caused by external dependency. Especially if you are on vpc
English
0
0
1
193
Captain Insight
Captain Insight@CaptainInsightX·
Backend interview question: Your API was working perfectly yesterday. Today, every request is timing out. The team says nothing changed. What do you check first?
English
32
2
47
7.7K
Eyo🥇
Eyo🥇@eyodesigns201·
NDA? Okay But don't mistakenly owe me Na Full Disclosure you go see next
English
54
100
945
26.5K
Don Cristos
Don Cristos@CristosDon·
@gozkybrain4u I usually have these issues most of my works based on strict NDA and don't know what to do
English
0
0
1
51
Sarcastic Geek
Sarcastic Geek@gozkybrain4u·
The only real world project in my portfolio without a strict NDA does not want to renew their hosting ke?
Sarcastic Geek tweet media
English
10
0
65
1.8K
kalycodes
kalycodes@KalyfaMuhd·
all you need to make $1m in 2026
kalycodes tweet media
English
13
11
89
2.4K
DEV-GLOBAL.ng
DEV-GLOBAL.ng@SirmonyD001·
“Npm install” My system no gree on since🙂
DEV-GLOBAL.ng tweet media
English
36
2
60
3.4K
Don Cristos
Don Cristos@CristosDon·
@pcshipp Depends on business needs and what's most available
English
0
0
0
25
pc
pc@pcshipp·
Hey devs, which will you build first? - Frontend - Backend
English
202
4
173
28.6K
Don Cristos
Don Cristos@CristosDon·
@Gamingtronium Relying on IP addresses is insufficient because of proxy rotation. In production, I would implement Layer 7 rate limiting keyed by User IDs or API Keys. For unauthenticated traffic, I’d use Device Fingerprinting and TLS JA3 signatures to identify unique clients.
English
0
0
3
1.1K
Gamingtronium
Gamingtronium@Gamingtronium·
Interviewer: Attackers bypass your 'Rate limiting' using multiple IPs. How do you protect your API in production?
English
39
22
401
68.6K
Sid
Sid@SidJain_80·
As a developer, what do you optimize for? A) Speed B) Clean code C) Scalability D) “It works, ship it” Be honest.
English
61
1
56
3.9K