OTP- & SMS-Verifikationssystem – Pepper-Hashing + DB-Ratenbegrenzung + Zustandsautomat + Replay-Angriff-Schutz
Tiefgehende Analyse des NestJS OTP-Verifikationssystems: SmsVerificationCode-Modell mit 17-Felder-Zustandsautomat-Design, SHA-256 Pepper-Hashing zum Schutz vor Datenlecks, 60s DB-Ratenbegrenzung + 5 Versuche bis zur Sperrung, nebenläufige sichere Aktualisierung, Throttler-Doppelschutz, Produktions-/Entwicklungs-Doppelmodus
**German Translation:**
Verwaltungs-Backend