✕ Clear all filters
56 articles
▶ Videos →

📰 Dev.to · Anas Sheikh

56 articles · Updated every 3 hours · View all reads

All Articles 184,451Blog Posts 166,622Tech Tutorials 49,573Research Papers 36,222News 22,943 ⚡ AI Lessons
That bcrypt.hash(password, 10) You Copy-Pasted Might Not Be as Secure as You Think
Dev.to · Anas Sheikh 4d ago
That bcrypt.hash(password, 10) You Copy-Pasted Might Not Be as Secure as You Think
Almost every auth tutorial, including some of my own examples in earlier posts, uses...
Optional Chaining Is Probably Hiding Real Bugs in Your Next.js App
Dev.to · Anas Sheikh 5d ago
Optional Chaining Is Probably Hiding Real Bugs in Your Next.js App
Optional chaining is genuinely useful for values that are legitimately, expectedly sometimes absent....
Adding priority to Every Image in Next.js Can Actually Make Your Site Slower
Dev.to · Anas Sheikh 6d ago
Adding priority to Every Image in Next.js Can Actually Make Your Site Slower
This is a genuinely counterintuitive one, since the natural instinct when trying to speed up image...
generateMetadata and Your Page Component Are Probably Querying the Same Data Twice
Dev.to · Anas Sheikh 🔧 Backend Engineering 1w ago
generateMetadata and Your Page Component Are Probably Querying the Same Data Twice
I wrote earlier about cache() fixing redundant database queries when multiple components in a tree...
Setting dynamicParams to false Can Make Brand New Content 404 Until Your Next Deploy
Dev.to · Anas Sheikh 🌐 Frontend Engineering 1w ago
Setting dynamicParams to false Can Make Brand New Content 404 Until Your Next Deploy
This one's a genuinely reasonable setting that causes a genuinely confusing symptom, a brand new...
Stop Using Array Index as a React Key. The Bug You Create Might Not Be Where You Think.
Dev.to · Anas Sheikh 🌐 Frontend Engineering 3w ago
Stop Using Array Index as a React Key. The Bug You Create Might Not Be Where You Think.
Here's a React bug that's incredibly easy to write because the code looks completely reasonable. You...
Your MongoDB Login Query Might Be Vulnerable to a One-Line Bypass
Dev.to · Anas Sheikh 🔧 Backend Engineering 3w ago
Your MongoDB Login Query Might Be Vulnerable to a One-Line Bypass
Most developers coming from a SQL background know to worry about SQL injection instinctively, string...
Calling redirect() Inside a Suspense Boundary Doesn't Undo What Already Streamed to the Browser
Dev.to · Anas Sheikh 🌐 Frontend Engineering 3w ago
Calling redirect() Inside a Suspense Boundary Doesn't Undo What Already Streamed to the Browser
Streaming is one of the genuinely great things about the App Router, the browser can start receiving...
unstable_cache Can Silently Serve One User's Data to a Completely Different User
Dev.to · Anas Sheikh 🔧 Backend Engineering 3w ago
unstable_cache Can Silently Serve One User's Data to a Completely Different User
I wrote about how force-caching a user-specific fetch can leak data across users. There's a second,...
revalidatePath Might Not Be Invalidating What You Think It Is
Dev.to · Anas Sheikh 🔧 Backend Engineering 4w ago
revalidatePath Might Not Be Invalidating What You Think It Is
If you've ever called revalidatePath after a mutation, watched the data still show up stale on the...
Your "Validated" Form Checkbox Might Always Be True, Even When It's Unchecked
Dev.to · Anas Sheikh 🔧 Backend Engineering ⚡ AI Lesson 4w ago
Your "Validated" Form Checkbox Might Always Be True, Even When It's Unchecked
Quick check, if you have any Server Action handling a checkbox, a "subscribe to newsletter," an "I...
One Buried cookies() Call Can Silently Kill Static Rendering for Your Entire Page
Dev.to · Anas Sheikh 🌐 Frontend Engineering 1mo ago
One Buried cookies() Call Can Silently Kill Static Rendering for Your Entire Page
Here's a question worth actually checking on your own app: is that marketing page you assume is...
Your Next.js App Might Be Leaking Secrets Right Now. Check Your Client Bundle.
Dev.to · Anas Sheikh 🌐 Frontend Engineering 1mo ago
Your Next.js App Might Be Leaking Secrets Right Now. Check Your Client Bundle.
Your app can be perfectly functional, beautifully designed, deployed on Vercel, passing every...
Next.js Server Actions Have Built-In CSRF Protection. Your API Routes Probably Don't.
Dev.to · Anas Sheikh 🌐 Frontend Engineering 1mo ago
Next.js Server Actions Have Built-In CSRF Protection. Your API Routes Probably Don't.
I wrote a post a while back about Server Actions being public, directly callable endpoints regardless...
Check Your Next.js Client Bundle Right Now. Your API Keys Might Already Be There.
Dev.to · Anas Sheikh 🌐 Frontend Engineering 1mo ago
Check Your Next.js Client Bundle Right Now. Your API Keys Might Already Be There.
This one takes about ninety seconds to check on your own project, and I'd genuinely encourage you to...
Your Next.js Middleware Might Be Running More Often Than You Think, Thanks to Prefetching
Dev.to · Anas Sheikh 🌐 Frontend Engineering 1mo ago
Your Next.js Middleware Might Be Running More Often Than You Think, Thanks to Prefetching
Here's a question worth actually testing on your own app: if a user never clicks a link, just scrolls...
Your Next.js Page Might Be Caching One User's Data and Serving It to Everyone Else
Dev.to · Anas Sheikh 🏗️ Systems Design & Architecture 1mo ago
Your Next.js Page Might Be Caching One User's Data and Serving It to Everyone Else
This is the scariest bug class I've run into in Next.js, not because it's exotic, but because it's...
I've Reviewed a Dozen Next.js Stripe Integrations. Almost None Handle This Race Condition.
Dev.to · Anas Sheikh 🌐 Frontend Engineering 1mo ago
I've Reviewed a Dozen Next.js Stripe Integrations. Almost None Handle This Race Condition.
Quick fact that surprises a lot of developers the first time they hear it: Stripe does not guarantee...
Next.js Automatically Dedupes fetch() Calls. Your MongoDB Queries Don't Get That for Free.
Dev.to · Anas Sheikh 🔧 Backend Engineering 1mo ago
Next.js Automatically Dedupes fetch() Calls. Your MongoDB Queries Don't Get That for Free.
Here's something that trips up almost everyone moving from a fetch-based API to a direct MongoDB...
Your Next.js Server Actions Are Public API Endpoints. Most Developers Don't Realize This.
Dev.to · Anas Sheikh 🌐 Frontend Engineering 1mo ago
Your Next.js Server Actions Are Public API Endpoints. Most Developers Don't Realize This.
Quick question. If you have a Server Action that deletes a user's account, called from a single...