The security of an API is often ignored in favor of completing the core functionality of our application. Maybe because we don’t have time, maybe because we aren’t exactly sure how or maybe because we didn’t remember to do it. …

Testing software is, and always will be, the best way to keep bugs and regression out of your product. REST-ful APIs are no exception to this rule.

Writing an API is only half the battle. You need to test it as well, otherwise you’ll never be sure if it works…

Ivelin Penchev

