---
id: securecoding
requestedLanguage: en
descriptionLanguage: en
---

# Secure Coding Practices

- Type: implementation practice
- Group: Security
- Placement: Security
- [Source](<https://owasp.org/www-project-developer-guide/assets/exports/OWASP_Developer_Guide.pdf>)

[HTML](https://dpm.cnonim.name/practices/securecoding/)

Apply rules for safe input handling, access control, secrets, and errors while writing and reviewing code.

## Relationships

- may be verified through: [Static Application Security Testing](/practices/sast/en.md) (verification)
- may be verified through: [Secret Scanning](/practices/secrets/en.md) (verification)
- accounts for risks from: [Threat Modeling](/practices/threat/en.md) (support)
- may be verified through: [Code Review](/practices/review/en.md) (verification)

[Show on the map](https://dpm.cnonim.name/#practice=securecoding&lang=en)
