u/ComparisonNew9425

What is your biggest fear about AI coding assistants and security?

We are all using them, but I feel like we are ignoring the elephant in the room. I spent all night refactoring some legacy code with an assistant and realized I have zero visibility into what kind of vulnerabilities it might be hallucinating into my production environment. It feels like we are trading long-term security for short-term speed.

I will go first: My biggest fear is that we are training the next generation of devs to ignore security best practices because the tool just 'handles' the boilerplate for them. We are essentially automating ourselves into a position where nobody understands the underlying risks of the code they are pushing.

What is your biggest concern? Is it the data leakage, the hallucinated vulnerabilities, or something else entirely?

reddit.com
u/ComparisonNew9425 — 14 hours ago