Recently, we saw what happened to [Shipfa.st](https://shipfa.st/) when their API routes weren't properly protected. Let's make sure your Next.js application doesn't suffer the same fate.
I used Wordpress as the headless CMS in the previous version of my app. But I didn't want to pay $100 each year to fucking stupid Godaddy. Why? Because I am not even a blogger and I wrote almost nothing here.