I build security and evaluation infrastructure for agentic systems—software that makes authority explicit, evidence reproducible, and failure modes legible.
I contribute to open-source security and infrastructure work.
- GoldKey Guard — Policy-bound authorization receipts and a local, fail-closed enforcement path for privileged agent actions.
- SENTINEL — Reproducible prompt-injection evaluation and explicit policy gating for tool-using agents.
- EMAP — Artifact-grounded experiments on multi-agent architectures under hard token budgets.
Least privilege · Explicit authorization · Reproducible evaluation ·
Auditable interfaces
Python · TypeScript/JavaScript · systems security
