9 Comments
Jul 9Liked by Stephen Rees-Carter

Would you recommend moving "laravel/tinker" to dev?

Expand full comment
Jul 5Liked by Stephen Rees-Carter

Yeah this is a tough balance, telescope is amazing for being able to debug issues. We've done our hardening re: access in production but its sad that OOTB (unless I'm missing something) I can't host it on a different subdomain and have separate auth for it.

Stephen, do you have any recommendations for zero-trust tooling to put telescope and nova behind them?

Expand full comment
Jun 28Liked by Stephen Rees-Carter

Hi Stephen, as a subscriber should I be able to see the 2 posts you mention in the opening paragraph?

Looking to learn more?

⏩ OWASP Security Tip: A09:2021 – Security Logging and Monitoring Failures

▶️ OWASP In Depth: A08:2021 – Software and Data Integrity Failures

Both seem to be private.

Thanks

Expand full comment