Writing.
Notes from the projects — first the thinking, then the building. Newest first.
Building SafeSphere: React, FastAPI, and a clear risk decision
How v3 is structured — input → analysis → SAFE / SUSPICIOUS / DANGEROUS → next steps, with Postgres and Redis.
Read post →2026
6 posts-
Building SafeSphere: React, FastAPI, and a clear risk decision
How v3 is structured — input → analysis → SAFE / SUSPICIOUS / DANGEROUS → next steps, with Postgres and Redis.
-
Thinking SafeSphere: personal security for the rushed click
Why everyday people need SAFE / SUSPICIOUS / DANGEROUS — not a SOC dashboard — in the moment before they click.
-
Building Sentinel: FastAPI, React, and live scan progress
How the toolkit was built — WebSocket progress, check suite, scoring engine, plain-English React report.
-
Thinking Sentinel: scanners people can actually read
The product idea — paste a domain, get a transparent score and plain-English fixes, not a CVE dump.
-
Building cybrotech.us: Next.js, copy, and a live threat map
How the site was shipped — page structure, brand voice, attack-vector animation, Vercel deploy.
-
Thinking cybrotech.us: a company site that feels like the work
Sole designer/developer brief — brand voice, service clarity, and a threat map that earns its place on the homepage.
2025
4 posts-
Building the DLP platform: agent → events → policy → dashboard
How the system is structured — Windows agent, collectors, detection and policy engines, React over Node and PostgreSQL.
-
Thinking DLP: visibility before the block button
Why the DLP platform started as architecture — insider leakage, USB, clipboard — and what I refused to fake.
-
Building SilentStrike: Digispark HID lab with detections attached
How the lab was put together — payload fixtures, Windows observables, and mitigations next to every demo.
-
Thinking SilentStrike: why a HID lab belongs on a blue-team desk
The idea before the Digispark — physical access still wins, and defenders need a safe way to see the chain.