A precise model of the WebSocket protocol's distinct trust model: how a persistent, bidirectional connection breaks the request-response assumptions most web security guidance relies on. The course covers cross-site WebSocket hijacking and origin validation at handshake time, authenticating and re-authorizing a connection across a long lifetime, validating every message rather than trusting an authenticated connection, rate limiting and resource exhaustion specific to persistent connections, transport encryption with the secure WebSocket scheme, denial-of-service risk from many simultaneous connections, and logging a connection's full lifetime rather than only its handshake.
Nothing. Every course, exam, and certificate on the catalog is free — including retakes. All you need is a free Safeguard account.
None. The flagship course, Safeguard Certified Practitioner, is a beginner-level course — basic familiarity with how software is built helps, but every exam question is answerable from the lessons themselves.
You can retake it after a 24-hour cooldown, as many times as you need. Retakes are free, and each attempt draws a fresh random set of questions.
The Safeguard Certified Practitioner credential is valid for 24 months from issue. The expiry date is printed on the certificate and shown live on its public verification page. Renewing means passing the current exam again.