Preliminary research
The API Made Me Do It: Do Bad APIs Lead AI to Generate Vulnerable Code?
AI-collected research leads through 6 October 2026, including bounded month-by-month reviews of selected social and community sources from January through September. Unranked, incomplete, not community-vetted, and subject to change.
A worked experiment on constraining generated web application code through safer APIs and build gates. The slides show failed restrictions, generated workarounds and revised gate designs, with control and constrained applications for inspection. Limited runs and AI review ratings do not establish a general improvement in security.
Record
- Researcher
- Yariv Tal
- Published by
- Secure From Scratch
In the archive
Related sources
Tags
This page is the archive's own catalogue record. The research is the work of Yariv Tal, first published at the original source. Preserved copies are kept so the citation survives its host.