
Makerkit.dev
ShipFa.st
supastarter
Nexty.dev
MkSaaS
NextBase
Codapult.dev
SaaSykit
Security Headers
Mozilla Observatory
Hardenize
Qualys SSL Server Test
HTTP Observatory
Snyk
MxToolBox
UptimeRobot
Makerkit is a production-ready SaaS starter kit built with Next.js App Router and Supabase that helps developers launch faster.
It provides a robust foundation with built-in authentication, team management, billing integration, and Super Admin - all powered by a modular architecture that makes customization and maintenance a breeze.
Whether you're building a B2B or B2C application, Makerkit handles the complex infrastructure so you can focus on building your product's unique features using modern tools like TypeScript, React, and Tailwind CSS.
Makerkit.dev
Security HeadersNo Makerkit.dev videos yet. You could help us improve this page by suggesting one.
Makerkit.dev's answer
Indie Hackers and Companies who want to launch quickly, without compromising on quality.
Makerkit.dev's answer
Makerkit uses Next.js 15 (App Router), Supabase, React.js, Typescript and Stripe.
Makerkit.dev's answer
Makerkit stands out by offering a truly modular architecture built with Turborepo, where core features like auth, billing, and notifications live in their own packages for better maintainability.
While most starters lock you into specific patterns or providers, Makerkit gives you flexibility with a multi-account system supporting both B2B and B2C scenarios, provider-agnostic billing, and edge-ready deployment options.
Beyond the basics, it includes production-ready features like multi-factor auth, real-time notifications, and team permissions - all built with Supabase, TypeScript, React Query, and modern tooling to make development a genuine pleasure.
Makerkit.dev's answer
While other starters give you basic auth and a dashboard, Makerkit provides a genuinely modular foundation with the real features SaaS products need - like multi-factor auth, team permissions, real-time notifications, and provider-agnostic billing, all organized in clean, maintainable packages using Turborepo.
You get a first-class developer experience with TypeScript, React Query, and modern tooling, plus the flexibility to support both B2B and B2C scenarios, different payment providers, and edge deployment options.
Best of all, Makerkit is actively maintained with regular updates and responsive support, so you're building on a foundation that grows with your needs rather than painting yourself into a corner.
Based on our record, Security Headers seems to be a lot more popular than Makerkit.dev. While we know about 69 links to Security Headers, we've tracked only 2 mentions of Makerkit.dev. We are tracking product recommendations and mentions on various public social media platforms and blogs. They can help you identify which product is more popular and what people think of it.
Price: $299 (Pro, individual) / $599 (Teams, 5 collaborators) - one-time, lifetime access URL: makerkit.dev. - Source: dev.to / 4 months ago
I saw these ones mentioned in an HN comment: - https://achromatic.dev - https://makerkit.dev - https://www.spirokit.com/ - https://saasykit.com/. - Source: Hacker News / over 1 year ago
Check: Go to securityheaders.com and enter your URL. A grade below B means you're missing important ones. - Source: dev.to / 2 months ago
The curl above is the fastest check; all four lines should come back. In a browser, DevTools, Network tab, click the document request, read Response Headers. For a letter grade, securityheaders.com scores you against a known rubric. One quirk: these four alone land a B, and you reach A only once you add Content-Security-Policy. - Source: dev.to / 3 months ago
Remediation: Configure your web server to suppress or mask the Server header. Add security headers like Content-Security-Policy, Strict-Transport-Security, X-Frame-Options, and X-Content-Type-Options. You can use tools like securityheaders.com to check your current header posture. - Source: dev.to / 4 months ago
Step 4: Check your security headers (2 minutes) Visit securityheaders.com and enter your deployed URL. If you get anything below a B, you're missing critical protections. - Source: dev.to / 5 months ago
How to check: Run curl -I https://yourdomain.com and scan the response headers. Or paste your URL into securityheaders.com for a free graded report. - Source: dev.to / 5 months ago
ShipFa.st - The NextJS boilerplate with all the stuff you need to get your product in front of customers. From idea to production in 5 minutes.
Mozilla Observatory - The Mozilla Observatory is a project designed to help developers, system administrators, and security professionals configure their sites safely and securely.
supastarter - The boilerplate for your next web app built on top of Supabase and Next.js.
Hardenize - Hardenize provides a comprehensive and free assessment of web site network and security configuration.
Nexty.dev - Launch your SaaS in days, not weeks. Nexty.dev is a production-ready Next.js and Supabase starter template for building modern SaaS applications. Launch your content, AI, or subscription service faster.
Qualys SSL Server Test - This free online service performs a deep analysis of the configuration of any SSL web server on the public Internet.