Skip to main content
Guidance

Securing HTTP-based APIs

How to ensure that application programming interfaces are designed and built securely.

Page 8 of 8

7. Limiting exposure

You should not overly expose your API endpoints or allow known malicious IP addresses to connect to your API. Limiting exposure so the attacker can't even access certain sensitive parts of your API will reduce the likelihood of compromise of your application. 



Published

Reviewed

Version

1.0