Course catalog
Repair isolated vulnerabilities and prove the safe behavior.
Use synthetic fixtures to repair XSS, SQL injection, broken authorization, secret leakage, CSRF, and CORS mistakes. Every lab is deny-by-default, network-isolated, and framed for systems you own or are authorized to test.
Section 1
Keep data as data across browser and database sinks.
Section 2
Authorize resources and reject forged cross-site actions.
Section 3
Reduce credential exposure and prove both failure and fixed states.
Ship a secure TypeScript app built with AI in your workflow: tested algorithms, tools kept inside safe limits, architecture choices you can explain, and releases you can check after they go out.
16 course sequence
Build and share a tested full-stack React app: a screen everyone can use, data only its owner can see, APIs with clear limits, realtime updates that stay correct, and deploys you can roll back.
14 course sequence
Analyze real data and build tested tools that talk to outside APIs safely and search your own content, using Python, Git, SQL, and vector search.
10 course sequence
Build and run a real AI product: it searches your own content, uses only the tools you approved, is tested the same way every time, has a plan for when it fails, and shows its speed and cost.
11 course sequence
Eligible first-time members can get 7 free days · Cancel anytime
Get started