Katie Paxton-Fear
👤 PersonAppearances Over Time
Podcast Appearances
Maybe they were on the ball and that API is going to work for years More likely, though, it's going to be insecure and it's going to be the way that a bad guy gets in and actually manages to exploit the API. A lot of the time we hear things like shadow APIs, rogue APIs. We've even got threat actors publishing their own APIs now. So we've got evil APIs and just APIs that are undocumented.
Maybe they were on the ball and that API is going to work for years More likely, though, it's going to be insecure and it's going to be the way that a bad guy gets in and actually manages to exploit the API. A lot of the time we hear things like shadow APIs, rogue APIs. We've even got threat actors publishing their own APIs now. So we've got evil APIs and just APIs that are undocumented.
There's very much a... While developers are trying to solve their regular technical debt, we've just added an extra layer on here for something else entirely.
There's very much a... While developers are trying to solve their regular technical debt, we've just added an extra layer on here for something else entirely.
There's very much a... While developers are trying to solve their regular technical debt, we've just added an extra layer on here for something else entirely.
first of all, is just how common they are. And the second thing is usually the amount of autonomy developers have. Developers can often produce whatever they need to get their job done. They don't have any guidelines. They don't necessarily have really strict ways of doing things. They work fairly autonomously. So if they need a new API, they'll just make it and put it up. So it's convenient.
first of all, is just how common they are. And the second thing is usually the amount of autonomy developers have. Developers can often produce whatever they need to get their job done. They don't have any guidelines. They don't necessarily have really strict ways of doing things. They work fairly autonomously. So if they need a new API, they'll just make it and put it up. So it's convenient.
first of all, is just how common they are. And the second thing is usually the amount of autonomy developers have. Developers can often produce whatever they need to get their job done. They don't have any guidelines. They don't necessarily have really strict ways of doing things. They work fairly autonomously. So if they need a new API, they'll just make it and put it up. So it's convenient.
Or potentially they make an API that they use for one project or they think they might use in the future. And then it never actually ends up being used as part of the main production hardware. There's a lot of different ways that these APIs get created. My favorite is one that I did when I was a developer. I installed a piece of software onto our server. And we never ended up using the software.
Or potentially they make an API that they use for one project or they think they might use in the future. And then it never actually ends up being used as part of the main production hardware. There's a lot of different ways that these APIs get created. My favorite is one that I did when I was a developer. I installed a piece of software onto our server. And we never ended up using the software.
Or potentially they make an API that they use for one project or they think they might use in the future. And then it never actually ends up being used as part of the main production hardware. There's a lot of different ways that these APIs get created. My favorite is one that I did when I was a developer. I installed a piece of software onto our server. And we never ended up using the software.
We never ended up buying it. The API is still out there to this day. I checked like last year and I left the company four years ago, more than six years ago. Six years ago, I left that company and the API is still up. It just gets forgotten.
We never ended up buying it. The API is still out there to this day. I checked like last year and I left the company four years ago, more than six years ago. Six years ago, I left that company and the API is still up. It just gets forgotten.
We never ended up buying it. The API is still out there to this day. I checked like last year and I left the company four years ago, more than six years ago. Six years ago, I left that company and the API is still up. It just gets forgotten.
A company has so many assets to worry about and developers have so much autonomy that they don't need to document everything they produce during their workday because that would be
A company has so many assets to worry about and developers have so much autonomy that they don't need to document everything they produce during their workday because that would be
A company has so many assets to worry about and developers have so much autonomy that they don't need to document everything they produce during their workday because that would be
crazy amount of work that would be and so you have this situation where you've got these apis that just created for the sake of convenience that they might be useful later they just end up never really getting decommissioned deleted or even disconnected from like a database
crazy amount of work that would be and so you have this situation where you've got these apis that just created for the sake of convenience that they might be useful later they just end up never really getting decommissioned deleted or even disconnected from like a database
crazy amount of work that would be and so you have this situation where you've got these apis that just created for the sake of convenience that they might be useful later they just end up never really getting decommissioned deleted or even disconnected from like a database