Filter by source
All sources GoCardless 6188 PubNub: 2462 Vercel 1539 Ariya Hidayat 849 Serverless 848 Jake Trent 812 Drew DeVault 783 Nic Raboy 733 Neon 479 Supabase 424 Soundcloud 409 SitePoint 406 Johannes Brodwall 378 Databricks 366 Jeremy Kun 323 PostHog 286 Real Python 286 Graham King 257 Carlos Becker 251 MapTiler 250 Scott Johnson 250 Lea Verou 242 Laravel 232 Matt Aimonetti 231 Andrew Bancroft 214 Stanko Tadić 186 Twilio 181 Atomic Object 176 Cloudflare 170 Nvidia 168 Trivago 158 Freek Van der Herten 155 Stack Overflow 145 The Daily WTF 136 Discord 134 WyeWorks 134 Dan Luu 133 Raymond Chen 133 Una Kravets 132 Swizec Teller 129 GitHub Old 128 Reginald Braithwaite 121 Radek Pazdera 118 Warp 114 Antirez 110 Codrops 110 Jane Street 105 Android 104 Cerner 103 AdRoll 102 Auth0 102 Jake Wharton 101 Changelog 100 Nelson Elhage 98 OCTO Technology 96 Ilija Eftimov 94 Marek Majkowski 94 Thoughtbot 89 AWS 88 dbt Labs 88 Finn.no 86 Nick Desaulniers 86 Hostinger 84 Hayden James 81 Luciano Mammino 79 Martin Fowler 78 Wingify 78 Marcelo Rinesi 77 Monica Dinculescu 77 Matt Warren 76 Docker 75 Drivy 75 Jan Lelis 75 Jessie Frazelle 75 Paweł Chudzik 73 Toptal 73 .NET 69 Nordic APIs 69 Mykhailo Kozik 68 Lerner Consulting 67 T.J. Maher 67 Timescale 66 Axel Rauschmayer 64 Mozilla Release 64 Ebay 62 Kotlin 62 Tania Rascia 60 0xADADA 59 Khan Academy 59 Jake Yesbeck 58 Confluent 57 Evil Martians 54 jOOQ 53 Tailscale 51 Sam Saffron 50 Sentry 49 Monstermuffin 48 RoseHosting 48 Huon Wilson 45 HackerEarth 44 Philip Walton 44 Dennis Felsing 43 SurveyMonkey 43 Fly.io 42 Robin Ward 41 Philipp Oppermann 40 Gleb Bahmutov 39 Facebook AI Research 38 The Pragmatic Engineer 38 Dean Hume 37 Rust 36 Josh Sherman 35 Alex Russell 34 Stripe 33 Joe Nelson 32 Tumblr 32 8th Light 31 Addy Osmani 31 Grab 31 Armin Ronacher 30 Domenico Luciani 30 Lazarus Lazaridis 30 Palantir 30 Pamela Fox 30 Airbnb 29 Brandwatch 29 Evan Miller 29 IPFS 29 Ruslan Spivak 28 Vanilla Java 28 Bartlomiej Filipek 27 Daniel Doubrovkine (dB.) 27 Jonathan Snook 27 Petr Mitrichev 27 Pinterest 27 Red 27 Mozilla Hacks 26 Bad Concurrency 25 CSC - IT Center For Science - Cloud Team 25 Dereuromark 25 Evan Hahn 25 GameChanger 25 Guido van Rossum 25 Jay Fields 25 Jeff Preshing 25 Julia Evans 25 Life Plus Linux 25 Mark Seaborn 25 Okta 25 Oona Räisänen 25 Srinivas Tamada 25 Stephen Colebourne 25 Steve Yegge 25 PagerDuty 24 Squarespace 24 Kogan.com 23 Criteo 22 GitHub 22 Babbel 21 Elegant Code 21 Crystal 20 Dave Cheney 20 David Walsh 20 Eli Bendersky 20 Guardian 20 HomeAway 20 Justin Weiss 20 Michael Herman 20 Miguel Quinones 20 Mike Ash 20 Ole Begemann 20 Paul Irish 20 Robert C. Martin 20 Stefan Parker 20 Target 20 Yahoo 20 Dropbox 19 Gusto 19 Netflix 19 Instacart 18 Nikola Brežnjak 18 The Coded Self 18 Aaron Patterson 17 Jeff Atwood 17 Thumbtack 17 Erlang Solutions 16 Stack Abuse 16 Wealthfront 16 Arkency 15 Bigcommerce 15 Edward Faulkner 15 Filippo Valsorda 15 High Scalability 15 Hypriot 15 Jacopo Tarantino 15 Jerry Gamblin 15 John Wittenauer 15 Lambda the Ultimate 15 Localytics 15 Matthew Green 15 Medium 15 Microsoft Python 15 Postmark 15 RocksDB 15 Slack 15 Spotify 15 Yegor Bugayenko 15 Advanced Web Machinery 14 Helpshift 14 Housing.com 14 HubSpot 14 OLX 14 REA Group 14 Robin Wilson 14 Zach Holman 14 Amit Merchant 13 Blender 13 Chris Wellons 13 Grofers 13 Indeed 13 Nextdoor 13 Rob Allen 13 Scott Hanselman 13 Henrik Warne 12 Jon Skeet 12 Mary Rose Cook 12 Nicolas Liochon 12 Novoda 12 Steve Bellovin 12 Abu Ashraf Masnun 11 Badoo 11 Bazaarvoice 11 Blundell's Android Tutorials 11 Canva 11 Feedzai 11 Haptik 11 Hashrocket 11 JobTeaser 11 Kevin Burke 11 Lyft 11 Marco Pivetta 11 Michael Crump 11 Paypal 11 RisingStack 11 Small Improvements 11 VNGRS 11 Vinted 11 Zendesk 11 Alan Storm 10 Appnexus 10 Artsy 10 BBC 10 Benchling 10 Bill the Lizard 10 Bohops 10 Bootstrap.com 10 Brendan Eich 10 Brendan Gregg 10 Brujo Benavides 10 Clever 10 Curalate 10 Daily JS 10 Daily Tech Video 10 Daniel Schmidt 10 Deliveroo 10 Dot Dev (.dev) 10 Dragan Djuric 10 Eddie Smith 10 Eric Elliot 10 Eric Lippert 10 Erik Runyon 10 Evan Jones 10 Federico Cargnelutti 10 Findmypast 10 Flickr 10 Freeletics 10 GoSquared 10 Groupon 10 Harry's 10 Henrik Lau Eriksson 10 High Scalability 10 Hootsuite 10 Idontgetoutmuch's Weblog 10 Itamar Turner-Trauring 10 Jamis Buck 10 Jesal Gadhia 10 Joel Spolsky 10 Juan Treminio 10 Junior Grossi 10 Kirill Shevchenko 10 Larry Land 10 Matt Cutts 10 Matt Might 10 Mesosphere 10 Miro Cupak 10 Miro 10 NSHipster 10 New York Times 10 Nick Craver 10 Ofer Zelig 10 OpenDNS 10 Panorama Education 10 Pat Shaughnessy 10 Piotr Pasich 10 Pony Foo 10 Postman 10 Ramon Fried 10 ReactJS News 10 Regular Geek 10 Remind 10 RetailMeNot 10 Riot Games 10 Schakko 10 Skyscanner 10 Stitch Fix 10 Strava 10 Teamwork 10 Tikhon Jelvis 10 Tinder 10 Transferwise 10 TrueCar 10 Undocumented Matlab 10 Universe 10 UpGrad 10 VTS 10 Vlad Mihalcea 10 Wilfred Hughes 10 Wojtek Gawroński 10 XING 10 Yammer 10 Yifan Lu 10 Zolmeister 10 eFounders 10 Josh Haberman 9 Nate Berkopec 9 Wemake.services 9 Mike Fogus 8 Ian Hummel 7 Ilya Grigorik 6 K. Harrison 6 Sensible 6 James Long 5 Thomas Young 5 Edgar Aroutiounian 4 Avenue Code 3 Bandcamp 3 James Hague 3 Raymond Hettinger 3 Algolia Anders Aarvik Ariejan de Vroom Asana Atlassian Bjørn Johansen Blake Erickson Bryan Cantrill Capgemini Chen Hui Jing Chien Tran Cloudera Cloudsmith CockroachDB Code with style! CodeName One Codelitt Codeship Commercetools Credit Karma Crowdfire Deezer DoorDash Dragan Gaic Engine Yard Entelo Envato Envoy Eventbrite Federico Tomassetti Figma GIPHY Galois Go GoDaddy Grafana Guilherme Rodrigues Hashnode Heroku Honeybadger Honeycomb IMVU Ievgen Kuzminov Instagram Jobandtalent John Resig Jonathan Dekhtiar Just Eat Kinvolk Kolosek Kyle Kingsbury LINE Linear LiveRamp Liveblocks Made Tech Marc Plano-Lesay Microsoft Edge Moove-it Mozilla Automation Team NPR Apps Nicolai Parlog (CodeFX) Oursky Oxide Computer Paul Lewis Peter Norvig Peter Steinberger Peteris Krumins PicCollage PlanetScale Prezi PullReview Rachel Kroll Radim Řehůřek Ray Wenderlich React Native Render Retool Schibsted Tech Polska Sharethis Shopify Sketch Sky Betting & Gaming Soshace Speedledger Sqreen Square Stackshare Swift Swiggy Takipi Temporal Turso Vena Solutions VersionEye Wayfair William Kennedy Zed Zendesk(old) theScore
69 articles Visit blog →

1. 10 Tips for Preparing APIs for Agentic Access (nordicapis.com)

In May 2026, Cloudflare released a new tool called isitagentready.com. It analyzes a URL for everything an agentic AI would need to interact with a site and then returns a score out of 100. Even better still, it breaks down its assessment by category, letting you know how your site performs for disc...

2. How Fuzz Testing for APIs Is Evolving (nordicapis.com)

Ahead of Nordic APIs Summit 2026, we check in with speaker Andrea Arcuri on how fuzz testing for APIs is evolving. “You cannot really check security properties if all your HTTP calls fail with a 4xx because your techniques can’t generate the right test data to pass the first layer of input validatio...

3. Are We Overengineering Modern Infrastructure? (nordicapis.com)

Ahead of his 2026 Nordic APIs Summit talk on scaling data ingestion without turning to Kubernetes, we check in with Bauer Media Group UK’s Faith Sodipe to talk about infrastructure complexity. In the tech space, perhaps more than in any other, we are always looking for the next big thing. Whenever a...

5. 7 Tools for Multi-Agent Infrastructure (nordicapis.com)

A single agentic workflow calling a single API is an easily tractable engineering problem — the solutions exist, and it’s ultimately just a problem of visibility and integration. A fleet of specialized agents delegating tasks to each other, sharing state, and discovering tools at runtime is decidedl...

6. API Marketplaces and the Invisible Economy: Trade Routes of the AI Era (nordicapis.com)

APIs are like the backstage crew of the digital economy. They’re not front and center, but they’re essential for putting on a show. Yet, from a business perspective, APIs have traditionally been regarded as a form of “operational plumbing,” with many enterprises treating them as technical infrastruc...

7. What Is a Token? A Developer’s Guide to Every Type (nordicapis.com)

If you’re an API or application developer, you likely hear the term “token” a lot. However, that term has entirely different meanings depending on the developer and the industry. Maybe you’re a developer who just implemented token-based authentication or found out the AI agent you built uses far too...

8. What Happens After Every Company Becomes a Data Company? (nordicapis.com)

In a 2018 Forbes article, Jedidiah Yueh and Randy Bean argued that every company is now a data company. “Leveraging data — in an ethical manner — has to be at the heart of your company and product strategy,” they wrote. “Collect, sift, then monetize.” Just shy of a decade later, virtually every comp...

9. 6 Ways to Achieve Sovereign API Management (nordicapis.com)

The regulatory framework has changed significantly over the last decade. GDPR was once largely theoretical. But now, multi-billion euro fines have made it a solid statement on European privacy. India’s DPDP Act has enforced privacy protections for Indian citizens, Brazil’s LGPD is actively enforced ...

10. 5 Signs That Authenticated API Traffic Is Actually Malicious (nordicapis.com)

A recent report from Salt Security published a truly alarming statistic. According to the report, 95% of API attacks come from authenticated sources. This should raise alarms for anyone who knows anything about cybersecurity, as it means API attacks are seemingly real transactions. These attacks won...

11. How to Improve API Observability for AI Agents (nordicapis.com)

API usage used to be predictable in the sense of who was using it — you could typically assume a human intent behind it, and with this, a human understanding and context. Even automated solutions were ultimately an extension of the human user. They might have worked faster and across more resources,...

12. How to Manage Privilege Drift in Multi-Agent Systems (nordicapis.com)

One of the most difficult aspects of building systems with multiple AI agents is managing permissions. Single AI agents often accumulate permissions as they are updated with expanded capabilities, enabling them to operate beyond their original purpose. The accumulation of permissions, referred to as...

13. What Is Scope Sprawl? (nordicapis.com)

Scope sprawl occurs when identities, applications, or tokens accumulate broader permissions than they need to perform their intended tasks. It often stems from weak internal standards, unclear documentation, or pressure on engineering teams to move quickly. For example, consider the following scenar...

14. Kin Lane on AI and the Future of APIs (nordicapis.com)

Ahead of Nordic APIs Summit 2026, we check in with Kin Lane (The API Evangelist) to talk AI, APIs, and the growing risk of data becoming trapped in walled gardens. There’s a ton of hype around AI in the API space, and beyond, right now. Many are talking about agentic consumption, Model Context Proto...

15. 6 Tools for MCP Observability (nordicapis.com)

The age of AI is upon us — and with it, a new age of telemetry and observability tools for MCP-driven stacks. MCP observability refers to the tools and practices used to monitor, trace, and analyze how AI agents interact with MCP servers, tools, and connected systems. The current slate of tools for ...

16. Guide to the OWASP MCP Top 10 (nordicapis.com)

With over 10,000 active servers and 97 million monthly SDK downloads, Model Context Protocol (MCP) is by far the most popular agentic protocol currently on the market. While this is good news for developers who don’t want to write custom integrations for tools and third-party apps in their stack, MC...

17. How to Convince Your Boss (nordicapis.com)

Want to justify your attendance at the Nordic APIs Summit? Use the template below to share the opportunity and benefits with your boss. We think you’ll be surprised by the results. Copy and paste the text below into your email. Hi [NAME] I would like to request your approval to attend the upcoming N...

18. 10 Factors for Checking Your API’s AI Readiness (nordicapis.com)

The consumption pattern for modern APIs is changing radically. What was once a largely human-to-machine pathway is now seeing a rapid climb in use by AI agents. This is somewhat problematic for many API providers, since APIs were designed for human developers who read documentation, understand conte...

19. What Is a Multi-Agent System? (nordicapis.com)

AI agents are a growing priority for enterprises, with many companies interested in deploying them for a wide range of purposes, from software development and marketing to sales and customer support. Most discussions revolve around single AI agents. However, Gartner has seen a 1,445% surge in inquir...

20. What AI Readiness Really Means and How It Applies to APIs (nordicapis.com)

Many organizations procure AI software or models assuming they will work instantly, fundamentally misunderstanding what it takes to implement artificial intelligence at scale. A common point of confusion is the belief that AI readiness is simply about having the smartest models available. In reality...

21. The 5 Most Disastrous API Vulnerabilities (nordicapis.com)

We tend to hear a lot about API vulnerabilities, between the OWASP Top 10 API Security Vulnerabilities and CISA’s Known Exploited Vulnerabilities Catalog. 42Crunch also recently published research on the most common API vulnerabilities, highlighting broken authentication, broken authorization, and m...

22. 5 Ways Agentic AI Can Act Unpredictably (nordicapis.com)

In April 2026, a big story dropped in the agentic world. In nine seconds, a Claude-powered coding agent deleted the entire production database for an application called PocketOS. Despite all the existing guardrails, the agent seemingly went rogue and confirmed with its users that the actions it took...

23. The Future of SaaS Is APIs Plus AI Agents (nordicapis.com)

SaaS is dead, and AI killed it. Or that’s what several loud voices in the tech industry would have you believe, anyway. And yes, there’s a grain of truth in the statement: the rise of vibe coding and AI systems means that even those with limited technical knowledge can consider ditching fancy — not ...

24. 6 Tips For Managing Multiple APIs (nordicapis.com)

The number of APIs has been increasing year-over-year, as they’re the infrastructure that makes the majority of modern digital architecture possible. Given that everything from AI to SaaS involves APIs at their core, it’s not the greatest shock that 78% of organizations don’t even know how many APIs...

25. 10 Interesting MCP Statistics (nordicapis.com)

Model Context Protocol (MCP) has, almost overnight, become a mainstay for developer tools and enterprise AI workflows. Anthropic open-sourced MCP in late 2024 and later donated it to the recently established Agentic AI Foundation (AAIF), a Linux Foundation project. As AI agents and large language mo...

26. 6 Enterprise MCP Adoption Best Practices (nordicapis.com)

A developer can ship an MCP server in an afternoon. Getting that same server running in regulated production, with credentials provisioned, access controls enforced, and security sign-off obtained, takes weeks. This post walks through the six challenges teams hit when scaling enterprise MCP deployme...

27. What Are Your Highest-Risk APIs? (nordicapis.com)

Often, enterprises end up treating all their APIs roughly the same. They’re authenticated, maybe rate-limited, and hopefully behind a gateway, but ultimately, they’re lumped together as part of a collection of APIs. While that flatness makes sense from a product management perspective, it poses a pr...

28. Top API Authorization Risks With AI Agents (nordicapis.com)

AI agents are pieces of software that autonomously perform actions to achieve a goal or objective. They operate in loops where they analyze input, such as prompts, context, tools, and memory. They then plan, take actions, and feed the output back into the loop to decide how to proceed. In this way, ...

29. JWT vs Opaque Tokens: Choosing the Right Token for API Security (nordicapis.com)

When discussing modern API security, developers frequently conflate terms like bearer token and JSON Web Token (JWT). This semantic confusion around access tokens often masks a critical architectural distinction. A bearer token specifies the transmission mechanism, while a JWT defines a specific, st...

30. 3 Core Pillars of AI Agent Access Control (nordicapis.com)

The application and API security industries are rethinking access control for AI agents. However, the underlying foundations remain the same ones the industry has relied on for years. What’s changing is how and when those foundations are applied. Depending on the use case, a given approach may work ...
Type to search HN and engineering blog articles
Press Escape to close  |  to navigate  |  Enter to open