Serverless to HTTP Handler:
Password hashing:
Encrypted cookies:
OAuth2 library:
JWT tool:
Go JWT library:
Cognito authorizer (uses github.com/dgrijalva/jwt-go):
Gosec:
Dependabot for pull requests:
Quay.io for container analysis:
snyk.io for dependency analysis:
RDS and secrets manager connector:
NIST notifier:
ScoutSuite:
OWASP Zap test tool:
CORS headers:
Disable caching and sniffin:
- https://gist.github.com/a-h/c0d85863621a67e980f7fad44e645fbc
- (Consider https://github.com/unrolled/secure)
HSTS middleware: