Master web security fundamentals. Implement email/password login, Google/GitHub OAuth2, JWT access & refresh token rotation, password hashing with bcrypt, and role-based access control (RBAC).
Hash user passwords with bcrypt and store records safely in database.
Issue signed JWT access and refresh tokens in HTTP-only cookies.
Configure Google & GitHub OAuth providers with NextAuth.js.
Protect admin routes and sensitive API endpoints with authorization guards.
Production-ready online store with product catalog, cart management, Stripe checkout, and admin dashboard.
Secure auth backend with JWT access/refresh tokens, bcrypt hashing, and role guard middleware.
Developer team issue ticketing dashboard with statuses filters and auth.