I like that this is open source, i can see what goes into it to make their product better than other products out there in its price range (i'm talking about similar applications). It's very easy to use & understand! You could do worse then using something from an established vendor who you know has been around much longer. Honestly I haven't seen anything bad so far - everything seems pretty straightforward to me at least when looking through some tutorials or getting my feet wet. We're trying to secure our API endpoints which are written almost entirely in nodejs but we wanted more protection against people snooping on requests made by users who aren;t authenticated properly yet.