You will get a production-ready Express.js REST API with clean routing

Younes B.Status: Offline
Younes B.

Let a pro handle the details

Buy Web Application Programming services from Younes, priced and ready to go.
Younes B.Status: Offline
Younes B.

Let a pro handle the details

Buy Web Application Programming services from Younes, priced and ready to go.

Project details

I build Express APIs that don't need a rewrite six months later: proper error handling middleware, input validation, JWT auth, and rate limiting where it matters. I've worked with both Mongo and Postgres, so I'll fit your existing stack instead of forcing my own preferences. Deliverable includes a Postman collection and clear env-var setup so you're not guessing at deployment.
Programming Languages
JavaScript
Coding Expertise
Performance Optimization, Security

What's included $140

These options are included with the project scope.

$140
  • Delivery Time 6 days
  • Number of Revisions 2
    • Responsive Design
    • Source Code
Younes B.Status: Offline

About Younes

Younes B.Status: Offline
Spring Boot Backend Engineer | Secure APIs, OAuth2/Keycloak, Fintech
Casablanca, Morocco - 8:15 am local time
I build and secure Spring Boot backends for fintech and SaaS teams — OAuth2/Keycloak auth, payment flows, and APIs that survive a real pentest. Day job: secure banking microservices at a Moroccan bank. Nights: bug bounty hunter on HackerOne and Bugcrowd.

Most Spring Boot APIs I'm called in to look at fail on the same handful of things: refresh-token rotation misconfigured in Keycloak, IDOR on resource endpoints because authorization is checked at the controller instead of the data layer, JWT validation that trusts the alg header, and multi-tenant queries missing a tenant filter. I find these for a living on both sides — I write the code and I break it.

What I do:
- Spring Boot 3 / Java 21 REST APIs — clean domain modelling, virtual threads where they earn it
- Spring Security: OAuth2, JWT, Keycloak realms, RBAC, multi-tenant isolation
- Security review of an existing Spring codebase — OWASP API Top 10, written report with reproduction steps and patches
- Angular / Next.js front ends when you need one hand on the whole stack

Background: Senior engineer in a bank's digital factory, working on payment and fraud-adjacent microservices. Independent security researcher. Java/Spring core with Docker, Kubernetes, and CI/CD.

Send me your repo or your problem and I'll tell you straight whether I'm the right fit before you spend a dirham.

Steps for completing your project

After purchasing the project, send requirements so Younes can start the project.

Delivery time starts when Younes receives requirements from you.

Younes works on your project following the steps below.

Revisions may occur after the delivery date.

Confirm endpoints and data model

I map out the routes and schema with you before writing any code, so there are no surprises in the final delivery.

Review the work, release payment, and leave feedback to Younes.