Rogue Startups

RogueStartups

On Rogue Startups we share the journey of startup founders as they're growing their businesses. We feature experts in the fields of sales, marketing, and product development to hear how they're growth hacking their productized services and SaaS products. If you're on the journey of an entrepreneur then tune and hear how we're tackling some of the same obstacles you may be facing, and how we're winning in the game of business. Listeners of Startups for the Rest of Us, My First Million, Mixergy, and Bootstrapped Web will love checking out our show.

  1. 2 DAYS AGO

    RS357: I Got Hacked

    This week on the Rogue Startups, Craig gets roasted. He brought in experienced software engineer Brandon Hancock after building the AI-powered SaaS app Outlier largely through “vibe coding,” so Brandon could audit the entire codebase live during the episode. The result? An honest but useful breakdown of what happens when non-technical founders ship fast with AI tools.  Brandon digs into real security risks, common architecture mistakes, and the best practices every founder should follow when building AI-driven products. If you’re launching SaaS with tools like Next.js, Supabase, and Claude, or simply adding AI features to your existing product, this episode offers practical lessons on building faster without accidentally breaking everything. Check the episode out on YouTube to see Brandon dig through Craig’s code onscreen. Highlights from Craig and Brandon’s conversation: What “vibe coding” looks like when building a real production startup How a single exposed Supabase key can create major security risks Why row-level security is critical for protecting user data Using AI to audit code and uncover vulnerabilities in minutes Simple fixes that dramatically improve SaaS security Why many AI code review tools miss critical issues The danger of exposing backend clients in frontend code How server actions can replace many API endpoints Best practices for managing database migrations with Drizzle ORM Why staging environments save founders from catastrophic production mistakes The difference between moving fast and building responsibly How to structure AI documentation for better development workflows Using task templates to teach AI your coding standards Practical lessons for founders building SaaS products with AI tools Resources and Links from This Episode Shipkit.ai: https://www.shipkit.ai/  Brandon on LinkedIn: https://www.linkedin.com/in/brandon-hancock-ai  Brandon’s website: https://brandonhancock.io/  Brandon on YouTube: https://www.youtube.com/@aiwithbrandon  Rogue Startups on YouTube: https://www.youtube.com/@roguestartups  Castos Free Tools: castos.com/tools Email me: podcast@roguestartups.com  Find me on Twitter: @TheCraigHewitt If you feel like Rogue Startups has benefited you, and it might benefit someone else, please share it with them. If you have a chance, give Rogue Startups a review on iTunes.  Do you have any comments, questions, or topic ideas for future episodes? Feel free to reach out to me: T... Chapters (00:00:00) - Getting Roasted: AI Security Best Practices(00:01:42) - What I Learned From Working On EMS Soap(00:04:40) - loading pandas in C#(00:05:04) - How to hack a Supabase client with a single code(00:06:51) - How to compromise a C# project with a phishing(00:10:17) - Code Reviewing in the Cloud(00:15:10) - Migration workflow in C#(00:20:45) - Creating a second branch in the Supabase project(00:23:31) - Choosing the right API for your app(00:25:59) - Brandon: How do we structure AI Development?(00:32:35) - Seeking Compound Engineering in the Code(00:33:41) - How to max out Claude Code in 2019(00:38:38) - Building a Software Startup With Claude Code(00:44:04) - Shipkit AI Announcement

    44 min

About

On Rogue Startups we share the journey of startup founders as they're growing their businesses. We feature experts in the fields of sales, marketing, and product development to hear how they're growth hacking their productized services and SaaS products. If you're on the journey of an entrepreneur then tune and hear how we're tackling some of the same obstacles you may be facing, and how we're winning in the game of business. Listeners of Startups for the Rest of Us, My First Million, Mixergy, and Bootstrapped Web will love checking out our show.

You Might Also Like