Sails and Express provide built-in, easily configurable protection against most known types of web-application-level attacks.
Note: If you believe you have found a security vulnerability in Sails, please refer to our security policy for instructions for reporting it.
Learn about several different types of attacks that Node.js/Sails helps prevent out of the box, and how to enable and configure security settings in your app: