Busy breaking things, figuring out why, then automating the fix.
I build practical tools around problems I run into in the real world — from discovering Shadow AI and securing cloud environments to making Kubernetes upgrades slightly less painful.
See the AI your organisation is actually using.
Shadow AI Guard is an open-source, self-hosted platform for discovering and governing AI usage across browser, CLI, IDE, desktop, network, cloud and MCP.
It brings those signals together so you can see the tools being used, the accounts they're signed into, the people and devices behind them, and where your visibility gaps actually are.
It also goes beyond visibility — including controls such as Paste Guard that can intervene before sensitive content reaches an AI service.
7 detection surfaces · 1 finding schema · self-hosted · no SaaS dependency
|
A pre-flight checker for Amazon EKS upgrades. Pulls together EKS Insights, AWS checks, kubectl and Helm to identify upgrade blockers, deprecated APIs, PDB problems and likely node-drain failures before you touch the cluster. Built after doing enough real EKS upgrades to wonder why all of this information lived in different places. Python · AWS · EKS · Kubernetes · Helm ➡️ View project |
Automated vulnerability scanning across container registries, source repositories and running Kubernetes workloads. Uses Trivy to discover and scan ACR, GCR, Azure DevOps repositories and cluster images, then produces reports and Slack digests. Built to make vulnerability scanning something that happens continuously rather than when somebody remembers. Python · Trivy · Kubernetes · Azure · GCP ➡️ View project |
|
A Raspberry Pi cybersecurity dashboard showing live security news, provider outages and newly exploited vulnerabilities. Pulls from sources including NCSC, CISA KEV and security feeds while tracking AWS, Azure, Cloudflare and GitHub service health. And when a second display is connected, the Pi screen runs Pokémon battles. Because obviously it does. Raspberry Pi · Python · HTML · APIs ➡️ View project |
A collection of utilities for the less glamorous bits of running AWS environments. Audits multiple accounts for idle infrastructure, unused storage, stale snapshots and IAM activity, with safeguards around Kubernetes-managed resources. Essentially: things I got tired of checking manually. Python · AWS · boto3 · IAM ➡️ View project |
Cloud & Platform
AWS · Azure · Kubernetes · EKS · AKS · Docker · Helm · Terraform
Security & Identity
DevSecOps · AI Governance · Entra ID · Intune · Jamf · SentinelOne · Trivy
Build & Automate
Python · Bash · PowerShell · GitHub Actions · GitLab CI/CD
Observability
Grafana · Loki · Prometheus
I like technology that solves an actual problem.
A lot of what ends up here starts the same way:
"There has to be a better way of doing this."
Sometimes that's discovering AI tools nobody knew were being used. Sometimes it's working out whether an EKS upgrade is about to ruin your afternoon. Sometimes it's putting a cybersecurity dashboard on a Raspberry Pi.
If something is repetitive, difficult to see, or unnecessarily manual, there's a decent chance I'll try to build something around it.




