<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:xhtml="http://www.w3.org/1999/xhtml">
<url><loc>https://codescan.kr/</loc><changefreq>weekly</changefreq><priority>0.8</priority></url><url><loc>https://codescan.kr/security/</loc><changefreq>weekly</changefreq><priority>0.8</priority></url><url><loc>https://codescan.kr/security/scan/</loc><changefreq>weekly</changefreq><priority>0.8</priority></url><url><loc>https://codescan.kr/security/code-scan/</loc><changefreq>weekly</changefreq><priority>0.8</priority></url><url><loc>https://codescan.kr/security/darkweb/</loc><changefreq>weekly</changefreq><priority>0.8</priority></url><url><loc>https://codescan.kr/security/pricing/</loc><changefreq>weekly</changefreq><priority>0.8</priority></url><url><loc>https://codescan.kr/security/enterprise/</loc><changefreq>weekly</changefreq><priority>0.8</priority></url><url><loc>https://codescan.kr/security/faq/</loc><changefreq>weekly</changefreq><priority>0.8</priority></url><url><loc>https://codescan.kr/shop/</loc><changefreq>weekly</changefreq><priority>0.8</priority></url><url><loc>https://codescan.kr/blog/</loc><changefreq>weekly</changefreq><priority>0.8</priority></url><url><loc>https://codescan.kr/pro/</loc><changefreq>weekly</changefreq><priority>0.8</priority></url><url><loc>https://codescan.kr/security/crm-scan/</loc><changefreq>weekly</changefreq><priority>0.8</priority></url><url><loc>https://codescan.kr/blog/sbom-eu-cra-supply-chain-visibility-2026/</loc><lastmod>2026-05-26</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/ai-chatbot-system-prompt-leak-jailbreak-2026/</loc><lastmod>2026-05-26</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/edge-function-secret-leak-cloudflare-vercel-2026/</loc><lastmod>2026-05-26</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/nextjs-server-action-authorization-bypass-2026/</loc><lastmod>2026-05-26</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/session-fixation-pre-login-session-id-2026/</loc><lastmod>2026-05-26</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/rate-limit-bypass-distributed-ip-header-cache-2026/</loc><lastmod>2026-05-26</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/oauth-pkce-mobile-saas-authorization-code-interception-2026/</loc><lastmod>2026-05-26</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/webhook-signature-verification-bypass-saas-2026/</loc><lastmod>2026-05-19</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/mcp-server-security-ai-agent-host-takeover-2026/</loc><lastmod>2026-05-19</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/open-redirect-phishing-saas-2026/</loc><lastmod>2026-05-19</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/log-masking-pii-credit-card-leak-2026/</loc><lastmod>2026-05-19</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/csp-nonce-bypass-xss-defense-2026/</loc><lastmod>2026-05-19</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/ai-coding-saas-top-7-vulnerabilities-2026/</loc><lastmod>2026-05-14</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/mass-assignment-ai-crud-privilege-escalation-2026/</loc><lastmod>2026-05-26</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/ai-coded-saas-api-key-leak-2026/</loc><lastmod>2026-05-11</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/graphql-introspection-schema-disclosure-2026/</loc><lastmod>2026-05-26</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/npm-supply-chain-axios-sap-incident-2026/</loc><lastmod>2026-05-26</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/indirect-prompt-injection-ai-agents-2026/</loc><lastmod>2026-05-26</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/claude-code-pretooluse-guard-dangerously-skip-permissions-2026/</loc><lastmod>2026-05-07</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/cyrillic-homograph-idn-attack-ai-security-review-bypass-2026/</loc><lastmod>2026-05-07</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/supply-chain-attack-season2-npm-cicd-5-checks-2026/</loc><lastmod>2026-05-07</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/free-web-vulnerability-scanner-comparison-7-tools-2026/</loc><lastmod>2026-05-07</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/http-security-headers-8-essential-guide-2026/</loc><lastmod>2026-05-07</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/web-login-security-bruteforce-ratelimit-2fa-guide-2026/</loc><lastmod>2026-05-07</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/file-upload-security-mime-spoofing-validation-2026/</loc><lastmod>2026-05-07</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/enterprise-ai-agent-security-policy-7-rules-2026/</loc><lastmod>2026-04-27</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/mithos-vibecoder-security-checklist-2026/</loc><lastmod>2026-04-27</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/iap-receipt-validation-bypass-prevention-2026/</loc><lastmod>2026-05-07</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/saas-payment-integration-security-pitfalls-portone-toss-2026/</loc><lastmod>2026-05-07</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/scanner-ssrf-19-files-patch-case-study-2026/</loc><lastmod>2026-04-23</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/pipa-privacy-policy-6-required-sections-checker-2026/</loc><lastmod>2026-04-23</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/ai-coding-env-security-checklist-7/</loc><lastmod>2026-04-22</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/vercel-breach-asm-diff-weekly-change-2026/</loc><lastmod>2026-04-20</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/ai-generated-jwt-auth-security-mistakes-fix/</loc><lastmod>2026-04-13</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/vercel-replit-deploy-security-settings-checklist/</loc><lastmod>2026-04-13</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/web-security-scan-manual-vs-automated-guide/</loc><lastmod>2026-04-16</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/ai-coding-payment-system-security-check-5/</loc><lastmod>2026-04-16</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/cors-misconfiguration-data-leak-cases-fix/</loc><lastmod>2026-04-15</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/post-deployment-security-checklist-8-items/</loc><lastmod>2026-04-15</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/supabase-rls-policy-ai-code-bypass-2026/</loc><lastmod>2026-04-14</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/nextjs-server-component-security-mistakes-2026/</loc><lastmod>2026-04-14</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/env-file-github-exposed-emergency-response/</loc><lastmod>2026-04-13</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/web-security-trends-2026-developer-guide/</loc><lastmod>2026-04-06</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/vibe-coding-sast-source-code-security-guide/</loc><lastmod>2026-04-06</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/solo-developer-security-guide/</loc><lastmod>2026-04-05</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/ssl-certificate-expiry-detection/</loc><lastmod>2026-04-05</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/supabase-api-key-exposure-prevention/</loc><lastmod>2026-04-05</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/vibe-coding-security-5-vulnerabilities/</loc><lastmod>2026-04-05</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/vibe-coding-crm-security-incident-cases-2025-2026/</loc><lastmod>2026-04-02</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/crm-security-monitoring-monthly-scan-automation/</loc><lastmod>2026-04-02</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/vibecoding-crm-security-checklist/</loc><lastmod>2026-04-02</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/privacy-law-penalty-vibecoding-crm/</loc><lastmod>2026-04-02</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/ai-generated-code-security-crm-guide/</loc><lastmod>2026-04-02</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/vercel-netlify-security-checklist-2026/</loc><lastmod>2026-04-01</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/supabase-crm-security-rls-api-key-guide/</loc><lastmod>2026-04-02</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/certificate-transparency-subdomain-discovery/</loc><lastmod>2026-04-01</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/typosquatting-domain-phishing-check/</loc><lastmod>2026-04-01</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/crm-personal-data-leak-fine-prevention/</loc><lastmod>2026-04-02</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/vibe-coding-crm-customer-db-exposed/</loc><lastmod>2026-04-02</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/web-security-glossary-for-non-developers/</loc><lastmod>2026-03-31</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/website-security-grade-a-guide/</loc><lastmod>2026-04-01</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/vibe-coding-security-incident-cases/</loc><lastmod>2026-03-31</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/website-security-grade-a-checklist/</loc><lastmod>2026-04-05</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/vibe-coding-security-top10-2026/</loc><lastmod>2026-04-01</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/bolt-website-security-check-guide-2026/</loc><lastmod>2026-03-31</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/ai-generated-code-security-vulnerabilities-analysis-2026/</loc><lastmod>2026-04-01</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/subdomain-takeover-prevention-guide-2026/</loc><lastmod>2026-04-01</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/what-is-waf-web-application-firewall-guide-2026/</loc><lastmod>2026-04-01</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/vibecoding-saas-hacker-targets-2026/</loc><lastmod>2026-04-01</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/cookie-security-attributes-guide-2026/</loc><lastmod>2026-04-01</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/web-service-port-security-guide-2026/</loc><lastmod>2026-04-01</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/vibe-coding-website-top-5-hacker-targets/</loc><lastmod>2026-03-31</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/supabase-vs-firebase-security-comparison-2026/</loc><lastmod>2026-04-01</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/nextjs-security-configuration-guide-2026/</loc><lastmod>2026-04-01</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/vibecoding-app-pre-deployment-checklist-2026/</loc><lastmod>2026-04-01</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/ssl-letsencrypt-free-setup-guide-2026/</loc><lastmod>2026-04-01</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/http-security-header-csp-guide-2026/</loc><lastmod>2026-03-26</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/supabase-rls-setup-guide-2026/</loc><lastmod>2026-03-26</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url><url><loc>https://codescan.kr/blog/cursor-webapp-security-checklist-2026/</loc><lastmod>2026-04-01</lastmod><changefreq>weekly</changefreq><priority>0.9</priority></url>
</urlset>
