Chris Heilmann, Daniel Cranney, Sebastian Gingter, Ramona Schwering, Jason Pamental, Francesco Ciulla, Matthias Neumayer, Dima Rubanov, Dayana Mick, Brian Whippo, Elena Torro, Peter Cooper, Alla Pavlova, Marco Podien & Jack Barber

Slopquatting, API Keys, Fun with Fonts, Recruiters vs AI and more - The Best of LIVE 2025 - Part 2

AI coding assistants are hallucinating malware and leaking API keys. Learn why treating your AI like an intern is the key to ensuring quality and security.

Slopquatting, API Keys, Fun with Fonts, Recruiters vs AI and more - The Best of LIVE 2025 - Part 2
#1about 6 minutes

The security risks of AI-generated code and slopsquatting

AI-generated code can introduce vulnerabilities like slopsquatting, requiring developers to treat AI models like an intern and shift their role towards code review and senior guidance.

#2about 4 minutes

Preventing exposed API keys in AI-assisted development

Developers using AI tools often inadvertently expose API keys and environment variables, which can be indexed by LLMs and exploited through prompt injection.

#3about 6 minutes

Choosing the right fonts for web legibility and performance

Selecting fonts with characteristics like open counters improves legibility for all users, while using a single web font provides more design consistency across platforms than relying on system fonts.

#4about 4 minutes

The limitations and risks of vibe coding

Vibe coding is risky because it leads to a loss of control and difficulty debugging, especially when working on novel problems not well-represented in AI training data.

#5about 5 minutes

Building and iterating on an LLM-powered product

The founders of an AI story app share their journey of launching a fast MVP, using user feedback to drive development, and fine-tuning a custom LLM for their specific use case.

#6about 5 minutes

Empathizing with users over chasing engagement metrics

Metrics like "time spent in app" can lead to predatory design patterns, highlighting the need for developers to empathize with users and prioritize their goals over simple engagement.

#7about 3 minutes

Why small companies shouldn't copy big tech processes

Most developers work at small to medium-sized companies, which should avoid adopting the heavy, rigid processes of tech giants that can stifle agility and creativity.

#8about 3 minutes

Building collaborative design tools and the neo-brutalism trend

Design tools should empower creativity without imposing strict rules, while the neo-brutalism trend sparks debate by prioritizing pure function over conventional aesthetics.

#9about 8 minutes

Writing authentic content in the age of LLMs

The rise of LLMs for content creation leads to generic, sometimes inaccurate text, reinforcing the need for human writers to provide personality, fact-checking, and a unique voice.

#10about 8 minutes

The impact of AI on tech recruitment and resumes

AI is transforming recruitment with challenges like applicant tracking systems (ATS) struggling with custom resume formats and recruiters being overwhelmed by AI-generated or fake applications.

#11about 7 minutes

The enduring value of freelance development for small businesses

Freelance development for small businesses remains a viable career path focused on fundamental skills and customer relationships, separate from the hype cycles of AI and large-scale platforms.

Notes and resources

This week we’re looking back on the best of 2025 from the Weekly Developer Show, with part 2 of a 3-part series:

00:20 - Sebastian Gingter on ‘slopsquatting’ and why you should treat AI like an intern

06:14 - Ramona Schwering on vibe-coders leaving API keys exposed

10:00 - Jason Pamental on how to find the ‘right’ font

15:40 - Francesco Ciulla on why vibe coding is fine so long as developers are in control

19:20 - Matthias Neumayer and Dima Rubanov on building with LLM APIs, and ethically building software

24:25 - Dayana Mick on why developers should try to emphathise with users

29:47 - Brian Whippo on the difference between corporate tech companies and start-ups

32:57 - Elena Torro on building design software for developers at PenPot and neo-brutalism

36:02 - Peter Cooper on writing a successful newsletter or blog in the age of LLMs

43:45 - Alla Pavlova on the impact of AI on recruitment in tech

52:03 - Marco Podien and Jack Barber on the ups and downs of freelance development

Related jobs
Jobs that call for the skills explored in this talk.

Featured Partners

Related Articles

View all articles
DC
Daniel Cranney
Dev Digest 204: Agentic AI Book, Creepy Links & Time to Ditch Projects
Inside last week’s Dev Digest 204 . 📘 The Agentic AI Handbook 💻 Writing a browser with AI 👔 LinkedIn Job Scams 🔗 The 2025 Web Almanac 📈 A cross-browser performance testing agent 💨 How Python’s packaging library got 3x faster 🫣 Create creepy links an...
Dev Digest 204: Agentic AI Book, Creepy Links & Time to Ditch Projects

From learning to earning

Jobs that call for the skills explored in this talk.

Software Developers

Code Healers LLC
Hinesville, United States of America

Remote
30-40K
Intermediate
Senior
.NET
React
JavaScript
+2
AI Developer

Laterite
Amsterdam, Netherlands

Remote
2-3K
Unix
DevOps
Python
+4