Tanya Janca | SheHacksPurple
banner
shehackspurple.bsky.social
Tanya Janca | SheHacksPurple
@shehackspurple.bsky.social
Secure Code Trainer - Best-selling author of Alice and Bob Learn Secure Coding & Alice and Bob Learn Application Security. #AppSec she/her
https://shehackspurple.ca 🌻
My talk, 'Threat Modeling Developer Behaviour: The Psychology of Bad Code', from OWASP Global AppSec is finally out! Please watch, share, like, and listen! I would love to hear your feedback.   💜

#OWASP #appsec #globalappsec
January 15, 2026 at 7:47 PM
I'm speaking in Vancouver IN PERSON this Thursday! Come hang out for the OWASP Vancouver Meetup, 6-8 pm, Jan 15th!

https://twp.ai/9PYyxp
January 15, 2026 at 3:51 AM
My talk with Neil Smithline to announce the NEW OWASP Top Ten 2025 is now out! Please watch, share, and like it! Thank you to the entire project team!

https://twp.ai/9PYwAt

#OWASP #appsec #globalappsec
January 14, 2026 at 5:38 PM
More 'Psychology of Bad Code’: Are we measuring what truly matters in our security programs? Do we measure ‘butts in seats’ instead of what is actually important?
https://twp.ai/ImttFr

Watch here, or read even more here: https://twp.ai/E6Ee3n
January 14, 2026 at 2:17 AM
I'm speaking in Vancouver IN PERSON this Thursday! Come hang out for the OWASP Vancouver Meetup, 6-8 pm, Jan 15th!

https://twp.ai/9PZ1Ip
January 13, 2026 at 6:13 PM
I'm speaking in Vancouver IN PERSON this Thursday! Come hang out for the OWASP Vancouver Meetup, 6-8 pm, Jan 15th!

https://twp.ai/9PZ18a
January 13, 2026 at 3:59 AM
Brochure only: https://twp.ai/ImtVzb

Feedback welcome. Always.
2/2
January 12, 2026 at 9:20 PM
I finally put all my secure-coding training into one place 👀
New brochure is up, with what I actually teach, who it’s for, and what teams get out of it.

If you’re curious (or responsible for training devs):
👉 https://twp.ai/E6EGnX
1/2
January 12, 2026 at 9:20 PM
I'm giving training in Denver on February at Wild West Hackin' Fest - Mile High! Check out my 2-day event, Secure Coding and API Hardening: Secure Design, Development, and Threat Modeling, here:
https://twp.ai/9PYwpO
January 12, 2026 at 6:17 PM
More 'Psychology of Bad Code’: Should training just be knowledge transfer? Or should we focus on behavioral change and pattern recognition instead? What if we designed our work environment for learn?
https://twp.ai/ImttFn

Watch here, or read even more here: https://twp.ai/E6Ee3j
January 12, 2026 at 2:04 AM
I'm joining Bryson Bort (@brysonbort) LIVE for Unicorn Dispatch to talk secure coding, fun training, and fixing the cyber skills gap.

Join us! Jan 12, 2026, 3:30 PM ET

Register: https://twp.ai/9PYqXe
#UnicornDispatchLive
January 11, 2026 at 5:41 PM
So that's what so many people from high school appear to be doing with their careers....
January 10, 2026 at 12:38 AM
I'm joining Bryson Bort (@brysonbort) LIVE for Unicorn Dispatch to talk secure coding, fun training, and fixing the cyber skills gap.

Join us! Jan 12, 2026, 3:30 PM ET

Register: https://twp.ai/9PYqUu
#UnicornDispatchLive
January 9, 2026 at 8:21 PM
More 'Psychology of Bad Code’: What if the tools we used every day helped us make more secure decisions? Let’s rethink AppSec tooling!
https://twp.ai/ImttFc

Watch here, or read even more here: https://twp.ai/E6Ee3Y
January 9, 2026 at 7:26 PM
More 'Psychology of Bad Code’: How can we make security more visible after apps go out into production? And why would we want to do that?
https://twp.ai/ImttFR

Watch here, or read even more here: https://twp.ai/E6Ee3N
January 8, 2026 at 3:28 AM
What do we think of my new web cam? Is it in focus enough? Thoughts?
January 7, 2026 at 9:25 PM
I'm giving training in Denver on February at Wild West Hackin' Fest - Mile High! Check out my 2-day event, Secure Coding and API Hardening: Secure Design, Development, and Threat Modeling, here:
https://twp.ai/9PYhhx
January 7, 2026 at 3:53 AM
More 'Psychology of Bad Code’: What if we taught developers how to break things and then gave them a safe place to do it? Would that make security (or insecurity) more visible?
https://twp.ai/ImttFI

Watch here, or read even more here: https://twp.ai/E6Ee3E
January 5, 2026 at 10:02 PM
More 'Psychology of Bad Code’: how do we embed these ideas directly into the SDLC, our tooling, and training?
https://twp.ai/ImttH4

Watch here, or read even more here: https://twp.ai/E6Ee50
January 4, 2026 at 1:24 AM
More 'Psychology of Bad Code’: let’s talk about what secure defaults look like in the real world, with several examples.
https://twp.ai/ImttGm

Watch here, or read even more here: https://twp.ai/E6Ee4i
January 3, 2026 at 12:47 AM
Oh-no!
January 2, 2026 at 7:06 PM
What's your favorite #OWASP project besides the Top Ten? No top ten lists! What ELSE? They do so much. #talkappsectome 

PS Happy holidays.
December 31, 2025 at 11:01 PM
More 'Psychology of Bad Code’: let’s talk about how secure defaults are better than secure intentions!
https://twp.ai/ImttGg

Watch here, or read even more here: https://twp.ai/E6Ee4c
December 30, 2025 at 12:16 AM
More 'Psychology of Bad Code', why do security programs fail?
https://twp.ai/ImttGV

Watch here, or read even more here: https://twp.ai/E6Ee4R
December 28, 2025 at 4:25 PM
Apply ice to burn.
December 27, 2025 at 3:55 AM