TGViewer
Стародубцев x IT-ХОЗЯЕВА Стародубцев x IT-ХОЗЯЕВА @strdub · 3.9K subscribers
Post #1514 2.23K
Предлагаю под этим постом собрать полезные промпты, которые вы используете на своих вайб проектах. Делюсь с вами пропмптом для рефакторинга и анализа безопасности вашего кода:


You are a senior engineer conducting a comprehensive pre-release security and quality audit of this entire project. You did NOT write this code. Your job is to find everything wrong with it.

Scan the ENTIRE codebase for:

Code Quality Issues:
Logic errors, incorrect assumptions, missing edge cases
Null/undefined handling problems, type mismatches
Code duplication and violation of DRY principle
Functions/classes violating single responsibility principle
Unreachable code, dead branches, unused variables/imports
Poor naming conventions or unclear abstractions
Error Handling:
Unhandled promises and exceptions
Missing try/catch blocks where needed
Swallowed errors without proper logging
Inconsistent error responses to clients
Security Vulnerabilities:
XSS vulnerabilities (especially in user-facing content)
SQL/NoSQL injection possibilities
Exposure of secrets, API keys, or credentials
Insecure authentication/authorization flows
Missing input validation and sanitization
CSRF vulnerabilities
Insecure file uploads if applicable
Hardcoded sensitive data
Async/Concurrency Issues:
Async/await misuse (missing await, mixing .then() and await)
Race conditions in parallel operations
Memory leaks (event listeners, intervals, closures)
Unhandled promise rejections
Improper error propagation in async flows
Performance Bottlenecks:
N+1 queries in database operations
Inefficient algorithms or data structures
Unnecessary re-renders in frontend code
Large bundle sizes, missing code splitting
Blocking operations on main thread
Missing caching strategies
Dependencies & Configuration:
Outdated packages with known vulnerabilities
Unused dependencies
Insecure or misconfigured environment variables
Missing or incomplete configuration files
Testing Gaps:
Critical paths without test coverage
Missing error scenario tests
Flaky or unreliable tests
Documentation:
Missing or outdated README
Incomplete API documentation
Missing setup instructions
Undocumented environment variables
For each issue found, provide:
File path and line number(s) - Exact location in the codebase
Issue description - What exactly is wrong
Impact assessment - Why it's dangerous, incorrect, or problematic (security risk, potential crash, poor UX, technical debt)
Severity level - Critical/High/Medium/Low
  • ❤ 15
  • 👍 5
  • 🔥 2
More from @strdub
  1. Oct 8, 2026Как я веду разработку своего SaaS в 2к26 Мой подход простой — обвесить метриками всё до че…
  2. Oct 7, 2026Я в этот раз до Avito.Tech.Conf не доехал, но посмотрел, что там показывали, плюс почитал…
  3. Oct 7, 2026Уже успели попробовать эту имбу? Хочу фидбек в комментариях посмотреть, а то я сейчас ещё…
  4. Oct 5, 2026Вчера — в рабочем чате. Сегодня — на билборде 👀 Такое стремительное развитие карьеры возм…
  5. Oct 4, 2026😂😂😂
  6. Oct 4, 2026Перестали делать рефанд средств за блокировку. Пожалуй не буду продлевать подписку 😊
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →