The boring part of Cloudflare Workers + D1, already done.
A router, a real auth pattern with brute-force lockout, D1 migrations,
tests that actually run — working and tested, not a tutorial.
Clone it, rename a table, ship your API today instead of losing a day to
wrangler setup.
$29 one-time, private repo access
What's in it
A ~30-line hand-rolled router — no Hono, no framework, fully typed.
Auth pattern: unguessable code + hashed secret (PBKDF2), atomic brute-force
lockout (5 wrong attempts → 60s lock) — the kind of thing you don't want to
get wrong and don't want to write twice.
D1 migration set up and working, one example table to extend.
13 tests, vitest + @cloudflare/vitest-pool-workers —
exercises the real Worker, not mocks.
Static assets served from the same Worker via the ASSETS binding.
A README that already answers the questions you'll hit: the OAuth login that
hangs with ERR_CONNECTION_REFUSED, the D1 permission the Workers
token template doesn't include, the wrangler d1 create prompt you
should say no to.
Quick look
npm install
npx wrangler d1 create my-app-db
# paste the database_id into wrangler.jsonc
npm run db:migrate:local && npm run dev
# open localhost, click the button — full loop working, nothing deployed yet
FAQ
I could write this myself — why pay $29?
You could. It's not hard, it's just a day of small, specific Cloudflare
friction — which permission the token template is missing, why the D1 binding
prompt shouldn't be trusted, why OAuth login silently hangs on some setups.
None of that is interesting to debug twice. This kit is that day, already spent.
Is this a finished app?
No — it's infrastructure. One example route shows the pattern; you delete it
and write your own. If you want a finished SaaS, this isn't that.
Why crypto only?
That's the payment rail available on this end, not a design choice. USDT via
the checkout above.
What do I get after paying?
An invite to a private git repository with the full source.