Author

Cassie Gatton

10 posts

How to Roll Out Application Layer Security Without Breaking Production
Blog

How to Roll Out Application Layer Security Without Breaking Production

Deploying application layer security in production can feel risky. Blocking rules, rate limits, and bot protections directly change how your system handles traffic and a misconfigured threshold does not just log an error, it can prevent rea

How to Measure the Real Impact of In-Code Security
Blog

How to Measure the Real Impact of In-Code Security

You added in-code protection. Requests are being evaluated, and some are being blocked. That is good. But the real question is whether your app is actually better off because of it. Security metrics often drift into vanity territory. Block

How to Future-Proof Your App Security Against Evolving AI Attacks
Blog

How to Future-Proof Your App Security Against Evolving AI Attacks

If you maintain a public-facing form, you are already dealing with bots. The difference now is that they are getting harder to spot. Account registration endpoints, marketing sites, demo request flows, and newsletter signups are increasingl

How to Integrate Arcjet Security into Your Stack in Minutes
Blog

How to Integrate Arcjet Security into Your Stack in Minutes

Security tooling has a habit of turning into infra work. You start with something simple like rate limiting or bot protection. Suddenly you are configuring a proxy, updating DNS, or introducing a new layer in front of your app. What should

Why Email Domain Restrictions Alone Won’t Protect Your Marketing Forms
Blog

Why Email Domain Restrictions Alone Won’t Protect Your Marketing Forms

If you are a developer working on a marketing or growth team, you have probably implemented this rule at least once: Only accept business email addresses. It usually comes from a reasonable request. Marketing wants better lead quality. Sal

Why Business Context Is the Missing Link in App-Level Attack Detection
Blog

Why Business Context Is the Missing Link in App-Level Attack Detection

Most attack detection still treats applications like interchangeable boxes: requests come in, signatures are matched, packets are inspected, and decisions are made in isolation. That approach worked when attacks were noisy, infrastructure‑l

6 Affordable Security Tools for Software Teams
Blog

6 Affordable Security Tools for Software Teams

Security is a requirement for any software that runs in production. At the same time, many well-known security tools are priced and designed for large enterprises, with dedicated security teams and complex infrastructure. For startups and

What Happens When Security Lives Outside Your Code
Blog

What Happens When Security Lives Outside Your Code

Security That Doesn’t Know Your Code Is Guessing For a long time, running security outside the codebase was the only realistic option. Centralized systems could be added without changing application logic, shared across teams, and managed

Case Study

Government agency in Indonesia reduces service disruptions by blocking automated attacks with Arcjet

Arcjet minimizes recurring issues for the Regional Financial Agency by preventing the bot and database-targeted attacks that previously slowed development.

Secure Nuxt and React Router Applications at Scale with Arcjet’s New SDKs
Engineering

Secure Nuxt and React Router Applications at Scale with Arcjet’s New SDKs

Arcjet’s mission is to help developers and security teams build with confidence, no matter where they work or what frameworks they choose. As the web evolves, you need tools that fit the way you already develop. That’s why we’re building na