API security layer for a SaaS product
Context
API keys were exposed in the frontend and permissions were scattered across services.
Work
A central gateway was added to handle authentication, permissions, and usage limits.
Result
A simpler setup with no exposed credentials in the client.