SafeSupply
Open-source threat intelligence for software supply chains. Aggregates advisories, normalizes data, and surfaces actionable signals.
Available for research & product collaborations
Focused on software supply chain security, Golang tooling, and frontends. I like strong ideas, tight feedback loops, and shipping useful things.
I work on
Open-source threat intelligence for software supply chains. Aggregates advisories, normalizes data, and surfaces actionable signals.
Large-scale scan and triage pipeline to identify malicious behaviors across the VSCode marketplace.
Concept-to-landing proof for a creator-friendly cloud workspace with spotless UX.
I explore software supply chain risks, dependency hijacks, and real-world exploitability. Here are a few threads and notes.
I’m a researcher who likes building. My center of gravity is security, but I care just as much about good taste in product and documentation. My north star is shipping things that stand up to scrutiny.
Tell me what you’re building or researching. I reply to thoughtful messages.