π SECURITY RESEARCH & VULNERABILITY DISCLOSURES
orchids.app-vulnerability-disclosure/
βββ timeline: Sept 2025 - Nov 2025
βββ impact: Saved YC startup $1M+
βββ type: Payment bypass vulnerabilities (2 critical)
βββ process: Discovered Sept 2025, contacted YC security team & CC/CERT after non-response, resolved Nov 2025
βββ tech: Web Security, Payment Systems Analysis
nvidia.zip-awareness-campaign/
βββ timeline: 2024
βββ mission: Demonstrate .zip TLD phishing risks
βββ investment: Self-funded security awareness project
βββ impact: Educated thousands about URL spoofing
βββ tech: DNS, Web Security, Social Engineering
βββ externalLink: https://nvidia.zip
βββ highlightLink:
π CLOUD SECURITY TOOLS
CryptoGuard-Suite/
βββ description: Encryption, Decryption & Hashing Tool
βββ tech: Python, Cryptography, Flask, Docker
SSL-Certificate-Manager/
βββ description: Enterprise SSL/TLS certificate lifecycle management
βββ tech: Node.js, OpenSSL, Docker, MongoDB
ValidateX-Security-Scanner/
βββ description: Email & Website Security Verification Tool
βββ tech: Python, DNS Analysis, SMTP Validation
π PRODUCTIVITY & DEVELOPMENT TOOLS
DataForge/
βββ description: Convert your CSV files to database queries (unlimited)
βββ tech: Python, CSV Processing, SQL Generation
CompressX-File-Processor/
βββ description: Advanced File Compressor & Format Converter
βββ tech: Python, Multiple compression algorithms
GitViz-Repository-Explorer/
βββ description: Interactive GitHub repository branch visualization
βββ tech: D3.js, GitHub API, React, TypeScript
DiagramCraft-Architecture-Designer/
βββ description: Collaborative architectural diagram editor (Excalidraw clone)
βββ tech: React, Canvas API, WebRTC, Socket.io
DocuEdit-Offline-Processor/
βββ description: Full-featured offline document editor (MS Word alternative)
βββ tech: React, IndexedDB, PWA, Service Workers
π SPECIALIZED SECURITY INTERFACES
ChemSec-Periodic-Interface/
βββ description: Chemistry-themed security tools dashboard
βββ tech: React, D3.js, Security APIs
PokeSec-Network-Discovery/
βββ description: Pokemon-themed network security scanner
βββ tech: Python, Nmap, Network Analysis
π CLOUD INFRASTRUCTURE PROJECTS
secure-scalable-web-app-gcp/
Building a Secure and Scalable Web Application on Google Cloud Platform
βββ description: Enterprise-grade web application leveraging GCP services with automated CI/CD pipeline, static asset optimization, and comprehensive security measures
βββ components: Compute Engine VMs, Cloud Build, Cloud Functions, Cloud Storage, CloudFlare CDN
βββ features: Automated GitHub deployments, Weekly Cloud Build automation, Static asset CDN delivery, DDoS protection, Firewall configuration
βββ security: Network segmentation, Access controls, Data encryption (at rest & in transit), WAF protection, Regular security audits, Vulnerability assessments
βββ tech: GCP, Compute Engine, Cloud Build, Cloud Functions, CloudFlare, HTML/CSS/JavaScript
interactive-resume-chatbot/
Unveiling My Interactive Resume: A Chatbot Built with Google Cloud Platform
βββ description: AI-powered conversational interface for resume exploration built with Dialogflow NLU on GCP. Provides engaging, personalized way for employers to learn about experience and skills
βββ components: Dialogflow (NLU Agent), Cloud Project, Dialogflow Essential, Cloud Run for deployment
βββ features: Natural language understanding, Intent-based conversation flow, Real-time responses, Website integration, Customizable dialogue paths
βββ benefits: Engaging user experience, 24/7 accessibility for recruiters, Personalized interaction, Efficient candidate screening, Stand out from traditional resumes
βββ implementation: Dialogflow intent definition, Conversational flow design, Website chatbot integration, Automated background deployment
βββ tech: Dialogflow, GCP, NLU, Cloud Run, Web Integration, Conversational AI
honeypot-security-system/
Honey Pot - A Web Defense Mechanism
βββ description: Decoy security system deployed on GCP for detecting, analyzing, and logging cyber attacks. Acts as bait to gather threat intelligence and protect production systems
βββ preparation: Google Cloud Shell initialization, Billing enablement, Compute Engine API activation, Region/zone selection
βββ deployment: Firewall rule configuration, MHN Admin installation, Honeypot VM setup, Network isolation
βββ components: MHN Admin (management), Compute Engine VMs, Custom firewall rules, Attack monitoring system
βββ features: Attack detection & logging, Threat intelligence gathering, Network security monitoring, Automated alerting, Traffic analysis
βββ security: Isolated network segments, Controlled traffic routing, Attack pattern analysis, Legal compliance verification, Service exposure management
βββ tech: GCP, Compute Engine, MHN, Network Security, Firewall Rules, Security Monitoring
π DATA SCIENCE & ML PROJECTS
project-pokedex-data-analysis/
Project PokΓ©dex - Where Data Meets Pocket Monsters
βββ description: Innovative data science exploration applying advanced ML and visualization techniques to PokΓ©mon datasets using cutting-edge GCP technologies
βββ components: Vertex AI (ML training), Google Colab (development), Python, Matplotlib, Looker Studio (dashboards)
βββ methodology: OSINT data collection β Data cleaning & classification β Exploratory analysis β ML model training β Interactive visualization
βββ features: Predictive type classifications, Pattern recognition & trend analysis, Interactive dashboards, Advanced data visualizations, Auto ML training
βββ challenges: Handling diverse PokΓ©mon attributes, Multi-class type prediction, Creating interactive visualization techniques, Model optimization
βββ insights: Comprehensive understanding of PokΓ©mon characteristics, Data-driven type predictions, Visual exploration of complex datasets
βββ tech: Vertex AI, Auto ML, Google Colab, Python, Matplotlib, Looker Studio, Machine Learning, Data Visualization
π SERVERLESS & API PROJECTS
json-resume-api-serverless/
Cloud JSON Resume API - Serverless Architecture Challenge
βββ description: Event-driven serverless API for serving resume data in JSON format from Firestore NoSQL database with public access and auto-scaling
βββ components: Firestore (NoSQL database), Cloud Functions (2nd gen), Cloud Run (deployment), Python (source code)
βββ architecture: Users make API call β Cloud Function triggers β Retrieves data from Firestore β Returns JSON response via Cloud Run
βββ deployment steps: Create GCP project, Configure Firestore collection, Write Cloud Function source in Python, Set service account permissions, Configure allUser access, Deploy on Cloud Run
βββ features: Real-time data retrieval, Serverless auto-scaling, Public API access, Event-driven architecture, NoSQL data storage, Low latency responses
βββ tech: Firestore, Cloud Functions (2nd gen), Cloud Run, Python, NoSQL, Serverless Architecture, Event-Driven
Total Projects: 16
Categories: Security Research (2), Cloud Security Tools (3), Development Tools (5), Specialized UI (2), Cloud Infrastructure (3), Data Science (1), Serverless (1)
Featured GCP Projects: 5 with architecture diagrams
Tech Stack: GCP, Vertex AI, Dialogflow, Cloud Functions, Firestore, Compute Engine, Cloud Run, Python, ML
High-Impact Disclosures: orchids.app ($1M+ saved)
All Projects Include: Project Links & Blog Documentation
"Recently discovered and responsibly disclosed critical payment bypass
vulnerabilities in a Y Combinator-backed AI startup, potentially saving
them millions in losses. Despite initial non-response, I persisted
through CERT/CC protocols and Y Combinator security team escalation,
demonstrating that doing the right thing matters more than recognition."