Skip to content
View w1ck3ds0d4's full-sized avatar
☕
Focusing
☕
Focusing

Block or report w1ck3ds0d4

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
w1ck3ds0d4/README.md

What I work on

  • EU CRA compliance tooling - SBOM and CVE evidence generated in CI, Annex VII technical documentation, tamper-evident audit logs; the commercial side runs under WickIT Lab
  • Security tooling - CI security baselines, secret and dependency scanning, AI security evaluation environments
  • Backend & platform engineering - .NET (Aspire, Orleans), Kubernetes, observability with OpenTelemetry, load-tested microservices
  • Desktop & mobile apps - Tauri (Rust + React/Svelte), Flutter, Electron, .NET/Blazor
  • Games - a co-op roguelike on PixiJS, and an RPG in progress on RPG Maker MZ
  • Intelligence tooling - real-time data aggregation, MITM filter proxies, log correlation

Stack

Public projects

CRA-Check

Free GitHub Action that turns every build into EU Cyber Resilience Act evidence. It generates a CycloneDX SBOM, scans it for known vulnerabilities, and maps the results to the regulation's Annex I and Annex VII requirements.

GitHub Actions Python CycloneDX SBOM EU CRA

SecureCheck

Reusable security pipeline for GitHub Actions. Secret scanning, static analysis, dependency and container checks run in a single pass and report one severity-graded verdict, with an optional AI review. Every repository here runs on it.

GitHub Actions Gitleaks Semgrep Trivy Node.js

BlueFlame

Privacy-first desktop browser that blocks trackers, ads and fingerprinting at the network layer through its own local filtering proxy. Includes optional Tor routing, private tabs and a live privacy dashboard.

Tauri Rust React hudsucker arti

ThreatLens

Log aggregation and correlation engine on .NET Aspire. Events arrive through an ingest API, a background correlator applies detection rules to flag and escalate matches, and a Blazor dashboard presents the results with full OpenTelemetry tracing.

.NET Aspire C# Blazor PostgreSQL Redis

GrainWallet

Per-player wallet microservice on Microsoft Orleans, built in versions that are load-tested side by side. The second version adds a transactional outbox, request idempotency and back-pressure, each measured under load and documented in an engineering journal.

.NET Orleans Kafka PostgreSQL NBomber

RimDoc+

Desktop app that diagnoses, repairs and supervises a modded RimWorld install. Load-order analysis and per-mod crash attribution pinpoint what broke, and every fix is a reviewable plan with its own rollback and a backup made first.

Tauri Rust TypeScript React C#


Statistics

stats languages streak trophies

Pinned Loading

  1. RimDocPlus RimDocPlus Public

    Diagnose, repair, and supervise a modded RimWorld install: static load-order analysis, log intelligence with per-mod stack-trace attribution, packs, and tiered auto-repair.

    TypeScript 2

  2. BlueFlame BlueFlame Public

    Privacy-first browser shell with an embedded MITM filter proxy (EasyPrivacy + EasyList) and optional Tor routing via arti. Tauri/Rust.

    Rust 1

  3. CRA-Check CRA-Check Public

    Free GitHub Action that generates a CycloneDX SBOM, scans for CVEs, and emits CRA evidence (Annex I/VII mapped) on every build.

    Python 1

  4. GrainWallet GrainWallet Public

    Per-player wallet microservice on .NET Aspire with Orleans, Kafka, and Postgres. Includes a multi-version comparison dashboard.

    C#

  5. ProofLog ProofLog Public

    Hash-chained, ECDSA-signed audit-log SDK for .NET. Tamper-evident, identity-bound, regulator-ready evidence.

    C#

  6. SecureCheck SecureCheck Public

    Reusable GitHub Actions security pipeline: Gitleaks, Semgrep, Trivy, linters, complexity, and optional Claude review, with Discord reporting.

    JavaScript