• ProbablyBaysean@lemmy.ca
    link
    fedilink
    arrow-up
    2
    ·
    13 days ago

    I built a full stack SaaS that is deployed at my work. It is exposed to the internet and I have only used pentesting and “fix this” and feature requests.

    It has awful context limitations. Saying “do this” means it overfills context halfway through and loses the nuance as it tries to restart the task after summary.

    I have had good progress when I say “add this pentest to an open items list markdown file” then the ai finds context defines the issue and updates the file. Rinse repeat. THEN I say I want to make a refactor that will fix as many of the pentesf issues as possible, can you make a refactoring spec. THEN I carefully review the business logic in the refactoring spec THEN I tell the ai to implement the refactoring spec phase 1 then i test then j say do phase 2… etc.

    I ask about Concerns of security and it works. I developed without git or any programming history, and the sheer amount of dumb duct tape exposed by pentesting was infuriating, but I got a process that works for my level of understanding.