Guide
All articles tagged Guide.

Securing your business's digital frontier: A comprehensive guide to identity and access management
This piece by Alex Olivier for HackerNoon, delves deep into the world of Identity and Access Management (IAM), outlining its pivotal role in fortifying business cybersecurity, enhancing operational efficiency, and ensuring regulatory compliance.

Decoupled authorization: Navigating technical challenges and best practices
Emre Baran examines decoupled authorization for secure software development, and goes over points that should be considered prior to implementing decoupled authorization.

Taking the pain out of authorization and user permissions
Cerbos separates authorization logic from the application code, boosting scalability, security, and adaptability. This separation makes updating authorization straightforward, enabling swift and secure adjustments to meet ever-changing business needs.

How to use Cerbos effectively
We are committed to making Cerbos a delightful piece of software to use, and, in this article, we aim to showcase all the (free!) developer productivity tools and features that we have built to achieve that goal.

Why audit logs are important
Audit logs capture information about key events that occur within software systems, and create a historical record. Administrators and compliance teams can use them to investigate user actions, spot suspect activity, and adhere to regulatory frameworks.

How decoupling can help you write better software
In this article, we look at the basics of decoupling, how decoupling can help you write better software and what to look for when identifying components for decoupling.

How to secure your Remix app routes with Cerbos?
In this tutorial, we will show you how to secure your Remix app routes with Cerbos. Cerbos is an open-source policy engine for authorizing access to resources. We gonna walk you through the steps of applying authorization in your Remix app with Cerbos. We will also show you how to use Cerbos to secure your routes and APIs.

Should you choose gRPC over REST when designing your APIs?
If you head up a development team, then choosing which architectural style to use is a critical decision to make when building up an IT infrastructure. APIs remain an important part of this decision making process; they are mediators through which information is sourced and transferred.

Accessing Protected Resources in Next.js with Prisma
Combine the power of Next.js and Prisma to build fast, secure, and dynamic web applications by integrating Cerbos, the open-source authorization layer

How to run your software startup more effectively
Running an effective software engineering organization is a formidable task at the best of times. Being a startup – especially when the core product is software – adds an extra dimension of difficulty on top of this because of the need to move fast and deliver in an extremely resource constrained environment.

Supercharging your policy rules with self-service custom roles
Managing self-service custom roles, with static attributes, or dynamic updates

Authorization trends 2023: Delegation to specialized solutions & advancements in technology
Authorization is still a brand new space and we saw lots of solutions launching with different approaches to tackling authorization delivering on RBAC, ABAC, and ReBAC.

Stateful authorization is an anti-pattern
The authorization layer needs access to this state to do its job, which raises an interesting question about where to keep the state.

Add authorization to your SvelteKit app: Full guide
Want to have fine-grained authorization for your SvelteKit app? Read our detailed guide for the full step-by-step breakdown.

How to add global authorization for Python microservices
Microservices-oriented architecture has evolved from a buzzword to standard architecture practice for building large-scale applications. Applications are designed as blocks of independently deployable services and communicate with each other via lightweight mechanisms.

Threading together fine-grained auth with Stytch and Cerbos
How to integrate Stytch Email Magic Links and Session Management with Cerbos, for effortless authentication and authorization, using Python FastAPI

Designing an authorization model that scales with your business
Authorization is one of the hardest parts of security to get right and one of the most expensive to fix when you get it wrong.

Let’s talk about role management - planning user roles for your application
By identifying roles, resources and how they map together, you can implement an efficient system that ensures your users and applications are secure.