About Security while Vibe Coding
If you or your team use AI assistants for coding, make sure to list the files with software secrets in the .*ignore
files of those assistants so that the secrets don't get leaked. Most of the assistants accept the same syntax as .gitignore
.
For example, edit the following files:
.gitignore
- unrelated to AI assistants, but still necessary for security..augmentignore
- for Augment Code..codeiumignore
- for Windsurf..continueignore
- for Continue..copilotignore
- for GitHub Copilot..cursorignore
- for Cursor.
and add these lines there:
*.sql
*.backup
.env
secrets.json
secrets.yml
Tips and Tricks Development Security Prompt Driven Development
Also by me
Django Paddle Subscriptions app
For Django-based SaaS projects.
Django GDPR Cookie Consent app
For Django websites that use cookies.