Everything here is v0. Experimental code, technical deep-dives, and core logic.
Everything here is v0. Experimental code, technical deep-dives, and core logic.
Weekly deep-dive reports on AWS — IAM/identity focused, automatically collected via GitHub Actions and published as a static site.
MCP server fronting an OpenID AuthZEN 1.0 PDP — lets LLM agents query a real Policy Decision Point
Collect, score, and surface deep-dive candidates across OAuth WG, WIMSE, and OpenID Foundation specs
A visual explainer for software supply chain security: six stages, six real attacks, six defenses.
Build an xDS control plane from raw protobuf, in the spirit of Kubernetes the Hard Way. Rust + tonic + xds-api.
Eight locally-verified microsegmentation patterns (K8s NetworkPolicy, Cilium L7, Calico, Istio mTLS, SPIFFE/SPIRE, nftables, OPA Gatekeeper, LocalStack AWS SG)
AWS Signature Version 4 in under 100 lines of pure Python, no external dependencies. Companion to a dev.to hands-on article.
SPIFFE-compatible workload identity + OpenID AuthZEN 1.0 authorization in a single Apache-2.0 binary. Cedar PDP, SPIFFE federation, tamper-evident audit log, Kubernetes operator.
Loading…
Loading…