본문으로 건너뛰기
友田 陽大

Contact

Building on Next.js × Supabase and want the authorization/RLS risks closed before launch? Start with a free 30-minute consult — or send the details below.

What I can help with

Security audit (Next.js × Supabase)

RLS/authorization review, tenant-isolation checks, and the IDOR and business-logic risks a scanner can only flag. Fixed scope, report plus fixes.

Technical advisor

Architecture, tech selection, code review, performance. Ongoing support for your team.

Project (fixed scope)

New SaaS builds, AI-powered systems, zero-to-one. Requirements through infrastructure, end to end.

30분 무료 상담으로 시작하세요

아래 양식을 작성해 보내 주세요. 영업일 기준 2일 이내에 답장드립니다.

무엇을 도와드릴까요? *
예산 (선택)
희망 시작 시기 (선택)
Frequently asked
Q. How does the audit relate to Aegis, the open-source toolkit?

A. Aegis automates the horizontal controls (headers/CSP, rate limiting, validation, CSRF, secrets hygiene) and flags the vertical risks it cannot fix — authorization/RLS design, tenant isolation, business logic. The audit is a human closing exactly those. It complements secure design; it does not replace it.

Q. What's the turnaround?

A. A spot review takes a few days; a standard audit is roughly 1–2 weeks depending on surface area. I confirm scope and timeline with you before any work begins.

Q. Do you work remotely?

A. Yes — fully remote and async-friendly, across time zones.

Q. Can we sign an NDA first?

A. Yes, before any scoping call. Your template or mine.

Prefer email?

If a form is not your thing, reach me directly at the address below.