Security in Go applications
# How the recurring security concerns map onto Go's stdlib and de-facto libraries, composed as middleware rather than a framework.
❯ cat documents/
-
Security in Go applications — the map
Concept
2026-08-09
How the recurring security concerns map onto Go's stdlib and de-facto libraries, composed as middleware rather than a framework.
-
Cryptography in Go — the stdlib way
Concept
2026-08-09
Go's curated, misuse-resistant crypto stdlib, x/crypto extras, TLS configuration, FIPS 140-3 mode, and key and secret management.
-
OAuth2 & OIDC in Go
Concept
2026-08-09
The OAuth2/OIDC protocol family in Go with x/oauth2, go-oidc, JWT libraries, resource-server middleware and embeddable providers.
-
Web security in Go apps
Concept
2026-08-09
The OWASP web attack surface in Go idiom — injection, XSS, CSRF, CORS, headers, sessions, file handling, SSRF and request limits.