I will do a security audit of your web app and fix vulnerabilities


About this gig
Worried that your web app or API could be leaking data or be easy to break into?
I audit web applications the way attackers look at them, and I know how to fix what I find because I build and run production SaaS platforms myself. Every finding comes with a clear explanation, severity and the exact fix.
What I check:
- Authentication, sessions, JWT and password reset flows
- Access control: can one user see another user's data?
- Injection (SQL, NoSQL, command) and input validation
- Exposed secrets, env files, debug pages and admin panels
- Webhooks, CORS, security headers, SSL and rate limiting
You receive a report ordered by risk, written for developers and for business owners. In the Audit and Fix package I also implement the fixes and retest.
I only test systems you own or are authorized to test. Please message me before ordering with your app URL and tech stack.
Respect third-party rights
Please be aware that it is against Fiverr's policies for sellers to include themes, templates, or any other elements that infringe third-party rights or applicable laws in the delivered work. Read more about in our Guide to Responsible Digital Creation.
Get to know Ivan Godoy
AI Engineer, Full Stack Developer and Cybersecurity
- FromBrazil
- Member sinceFeb 2023
- Avg. response time2 days
Languages
Portuguese, English
My Portfolio
FAQ
Will the audit take my site down or damage data?
No. I use safe, non-destructive tests and agree the scope with you first. If you have a staging environment I prefer to test there. Nothing is deleted or modified without your approval.
Do you need access to my source code?
Not for the Quick Scan. For the Full Audit, read access to the code finds much more than testing from outside. For Audit and Fix I need access to the repository to apply the fixes.
Which technologies do you audit?
Mainly web apps and APIs built with Node.js, NestJS, Express, Next.js, React and PostgreSQL. The outside tests work for any web app; ask me if your stack is different.
