A practical method for finding the application programming interfaces (APIs) an organisation actually exposes, rather than the smaller set it has documented. You will learn why undocumented and shadow APIs are created continuously through ordinary engineering decisions, what specific protections a shadow API misses that a known one receives automatically, and three complementary discovery techniques: traffic analysis, source code and repository scanning, and cloud routing configuration review. The course covers API versioning sprawl, classifying discovered APIs by sensitivity and exposure, the specific risk mobile and third-party client integrations create, and closes with turning discovery into an ongoing discipline that feeds directly into an organisation's existing risk prioritisation process.
Nothing. Every course, exam, and certificate on the catalog is free — including retakes. All you need is a free Safeguard account.
None. The flagship course, Safeguard Certified Practitioner, is a beginner-level course — basic familiarity with how software is built helps, but every exam question is answerable from the lessons themselves.
You can retake it after a 24-hour cooldown, as many times as you need. Retakes are free, and each attempt draws a fresh random set of questions.
The Safeguard Certified Practitioner credential is valid for 24 months from issue. The expiry date is printed on the certificate and shown live on its public verification page. Renewing means passing the current exam again.