🔒 How to Secure Vibe-Coded Apps
📢 Speaker: Thiru Bhat, Cofounder, CEO, Strato Cloud
AI can generate code in seconds. Security still has to be intentional. This hands-on session covers how to manage risk when shipping AI-assisted code with Claude Code, Replit, Codex, Lovable, and AI agents.
🎯 What we’ll cover
- 🚨 The top 10 vibe coding risks: exposed API keys, static cloud credentials, over-permissioned IAM, prompt injection, insecure dependencies, missing auth controls, data leakage, shadow AI agents, and AI-generated vulnerabilities
- 🤖 Non-human identities: why AI agents, microservices, and CI/CD pipelines are the fastest-growing attack surface, and why secrets are the new passwords
- 🛠️ Live security reviews: built-in tools (Claude Code /security-review, Codex) plus third-party scanners (Trivy, Semgrep, gitleaks, npm/pip audit) •
- 📦 A real Replit project, end to end: finding CVEs, catching hardcoded secrets, and validating fixes
- ✅ A practical AI coding security checklist: code review, secret scanning, dependency scanning, RLS verification, auth testing, IAM review, audit logging, and temporary credentials
👥 Who should come
Founders, engineers, and builders shipping AI-assisted code who want speed without the security cleanup later.
The future of vibe coding is secure, identity-aware, and zero-trust by default. Come learn how to get there. 🚀
About Thiru Bhat
Co-Founder & CEO,
Strato-Cloud.io | AI native cloud access, governance and compliance platform with visibility for human, non-human identities, AI agents
About StratoCloud
StratoCloud is a comprehensive multi-cloud management platform that simplifies cloud management for businesses of all sizes. Our platform helps you gain visibility, ensure security, and govern cloud resources effectively across AWS, Azure, GCP, and more.
https://www.strato-cloud.io/