VibeCoded

The Compliance Brief for AI-built apps

Every Tuesday, the AI and app security stories from the past week, and what they mean for an app built quickly with AI tools.

Last reviewed 2026-09-29Written by Jacob Masse, TrazTech Inc.

Apps built with AI tools fail in familiar ways: missing authorization, secrets in the client, and LLM features that trust whatever comes back. The Compliance Brief tracks the attacks that exploit exactly that, one email a week.

Below are the stories from recent issues that bear on AI and app security, each with the short version and a link to the full take.

Latest on AI security, LLM attacks and app security flaws

Every issue on VibeCoded

Every issue in full, including the stories outside AI security, LLM attacks and app security flaws, is in the archive on traztech.ca. Issues with nothing on AI security, LLM attacks and app security flaws are listed there and not here.

Questions

How often does The Compliance Brief arrive?

Once a week, on Tuesday morning. Each issue covers the past week in five stories or so, with what happened and a short take on what it means for founders shipping AI-built and vibe coded apps.

What does it cost?

Nothing. It is written by Jacob Masse, Principal at TrazTech Inc., which operates VibeCoded. There is no paid tier.

Will signing up here send me anything else?

No. The form on this page adds you to The Compliance Brief and nothing else. Downloading a checklist elsewhere on the site is a separate signup, and it says what it sends before you give an address.

How do I stop it?

Every issue ends with a one-click unsubscribe link, and it is honoured immediately. Replying to any issue also reaches Jacob directly.