18+ years across fintech, startups, and F1 - currently hunting misconfigs and trust paths in the cloud.
- 🔒 Security Engineering - IAM trust-path analysis, red & purple team tooling, cloud recon
- 📊 Observability & Data - eBPF, continuous profiling, OTel, LGTM stack, ClickHouse
- 🛠️ Infrastructure - Kubernetes, OpenTofu/Terragrunt, GitOps
- 🤖 AI Agents - building lightweight automation and custom LLM tooling
| Project | Description |
|---|---|
| veil | Expose hidden trust paths in your AWS IAM setup before they become security risks Go |
| trick | Effortless AWS persistence via AssumeRole - red team credential rotation Go |
| spark | Seeking Public AWS Resources and Kernels - cloud recon tool Go |
| aws-console | Automatically opens the AWS Management Console from CLI credentials Go |
| Project | Description |
|---|---|
| yaml2json | Fast YAML to JSON converter Go |
| atlantis-gen-yaml | Generate Atlantis project configs from Terragrunt files Go |
| echo | Minimal Cloudflare Worker implementing WebFinger (RFC 7033) Rust |
| Project | Description |
|---|---|
| UDDF2Vid | Parses dive computer logs (UDDF) and renders a telemetry HUD video on green screen - built for fast dive video editing Rust |
Languages: Go · Zig · Rust
Cloud: AWS · GCP
Streaming: Kafka · NATS
Observability: OTel · eBPF · Loki · Grafana · Tempo · Mimir
Infrastructure: Kubernetes · OpenTofu · Terragrunt · CloudNuke · GitOps · WAF





