Practical wisdom for secure software.
In-depth guides on building secure, real-world web apps and APIs — the thinking behind B5 Secure’s design, in developer language.
ASP.NET Core Policy Authorization vs. B5 Secure Activity-Data Authorization (ADA)
A comprehensive comparison of ASP.NET’s authorization options with B5 Secure’s activity-data authorization (ADA), using a real-world digital-banking system — including declarative role-based and policy authorization.
Designing Activity-Based, Data-Aware Authorization (ADA)
What ADA is, its advantages, the process for activity and data authorization checks, and the challenges and recommended solutions for ADA in the real world.
Protecting Your Users Against Cross-Site Scripting (XSS) Attacks
What XSS is, the different types, and how to sanitize data across every subsystem of your platform (emails, APIs, front/back-end) to protect your users.
Implementing HMAC Scheme to Protect API Requests
What HMAC is and its advantages, what to consider when implementing strong HMAC, and a unique form of HMAC (invented by the B5 Secure team) to protect service callbacks.
Try a different term or clear the filter.
Talk to a human.
Get architecture guidance, Test Mode access, integration review, or help choosing the right B5 identity and authorization pattern.