Full-stack developer, security-minded
I build web products end to end, then try to break them before anyone else does. Secure architecture, threat modeling, and clean interfaces — same person, same repo.
I'm a full-stack developer with 9 years building web products, and a background in application security that shapes how I write evesrything else. I don't treat security as a separate phase — threat modeling and secure defaults happen at the same time as the schema and the UI.
Most of my work sits across React or or Next.js on the front end and ASP.NET Core or Java on the back, with the habits of someone who's spent time on the other side of the fence: reviewing pull requests for injection and auth flaws, running internal pentests, and cleaning up after the findings.
I still like the craft side of the job too — a fast interface, a clean data model, code that the next person can actually read.
Prefer email, or want to see something specific before reaching out? Have a look through the projects above — most link straight to a live demo or the source.