My Projects
Real repositories I own and ship: distributed systems, data platforms, ML infrastructure, and low-level software. Each card links to the code behind it.
Flagship Systems
ForgeCI
CompletedDistributed Systems: A CI engine built from scratch in Go to explore the control plane behind remote execution. It persists DAG state, schedules jobs across runners, freezes each submission as an immutable source snapshot, and delivers logs, artifacts, cache entries, and GitHub Checks through durable boundaries.
Lost remote jobs are conservatively marked aborted; automatic job retry and reassignment are intentionally out of scope.
CommerceCore
CompletedBackend Engineering: A correctness-first Spring backend for checkout under inventory contention, request retries, payment ambiguity, and message redelivery. A separate Payment Service provides a real PostgreSQL-backed gRPC ownership boundary rather than an in-process mock.
UNKNOWN, then reconciles by looking up the provider's durable result without reauthorizing; stable request identity makes retries idempotent.The project models one merchant and one currency; it is a correctness laboratory, not a complete commerce product.
PgSentry
CompletedDatabase Reliability: A PostgreSQL high-availability and recovery lab using Patroni with etcd quorum, streaming replication, and HAProxy routing. It separates failover from data recovery through partition tests, durability experiments, backups, WAL archiving, and point-in-time recovery.
A local failure lab with deliberate faults, not a hosted database service or a claim of zero data loss under every configuration.
MatchSense
Active DevelopmentDistributed Systems: Real-time football (soccer) analytics: simulated match events flow through Kafka into a stats aggregator, an ML prediction service, and a live Grafana dashboard. The interesting part isn't the sport, it's making the event pipeline survive retries, duplicates, and partial failures.
Match events and ML training data are simulator-generated, not live sports data.
Aegis
CompletedPlatform Engineering / Security: A self-hosted GitOps Kubernetes platform built to prove security and reliability controls under real, deliberate failure: leaked secrets, unsigned images, lateral network movement, database destruction, host reboot, a signed-but-broken release.
A development-security posture, evidence-backed at every layer tested; not described as zero-trust, and its feature set is intentionally frozen.
Market Pulse
Active DevelopmentData Engineering: A local stock-market analytics lakehouse. Daily OHLCV price bars land raw in an Iceberg bronze table, get cleaned into silver, and roll up into a gold analytics layer (returns, moving averages, volatility, volume-anomaly detection) via dbt-on-Trino, orchestrated by Airflow.
Linux Kernel Lab
Completed
Systems Programming: Built Linux 6.10 from source and booted it in QEMU with a custom BusyBox initramfs, wrote a character-device driver, and attached GDB to a paused kernel at start_kernel to step through early boot.
Personal Cognitive Load Monitor
Active DevelopmentMLOps: An educational MLOps platform around a FastAPI cognitive-load classifier: experiment tracking, data versioning, containerized serving, and drift monitoring, built to exercise the full path from notebook to (would-be) production.
Uses synthetic data for an educational MLOps demonstration, not a medical or clinically validated system.
Company Research
CompletedApplied AI / Full Stack: A full-stack platform for researching companies against a resume: a Retrieval-Augmented Generation pipeline matches resumes to job postings using LangChain retrieval and LangGraph orchestration over a pgvector store, streamed back to the client over Server-Sent Events.
QuorumKV
In ProgressDistributed Systems: A distributed key-value store built to study consensus from first principles. Raft is implemented from scratch here, not imported as a library: persistent state, log replication, leader election with PreVote, snapshotting, joint-consensus membership changes, leadership transfer, and quorum-confirmed reads, driven by a real node executable over real TCP.
Correctness properties are implemented and tested, not formally proven.
PageDB
In ProgressSystems Programming: A relational database engine built bottom-up in C23: persistent slotted pages, a Clock buffer pool, multi-page table heaps, typed schemas and catalog, a persistent B+ tree index, pull-based physical execution operators, and a bounded SQL parser/planner behind a loopback-only server speaking a custom binary wire protocol.
Physical execution is read-only, single-threaded, and single-table; no joins, transactions, WAL, or crash recovery yet.
Wirestack
In ProgressSystems Programming: A userspace TCP/IP network stack in C++20, built from a Linux TAP device up through Ethernet, ARP, IPv4, ICMP, UDP, and TCP to a minimal HTTP server. The goal is understanding the protocols by implementing them: real handshakes, real congestion control, real retransmission.
A learning project prioritizing protocol correctness over performance; TCP simultaneous open, DSACK, and modern congestion control (CUBIC/BBR) are not implemented.
TensorForge
In ProgressML Systems: An analytical AI-accelerator performance modeling toolkit for GEMM, Transformer, and Conv2D workloads. It makes every step of accelerator performance reasoning explicit and traceable to a formula: arithmetic intensity, PE-array mapping, SRAM feasibility, tiling, and roofline-based compute/memory timing.
An analytical modeling toolkit, not a cycle-accurate simulator or a complete Transformer/CNN inference simulator.
Earlier Projects & Labs
Earlier application work, infrastructure labs, and smaller tools.
MatchSense
Earlier ProjectEvent-driven football analytics built around idempotent Kafka ingestion, Redis state, cross-service traces, and simulator-generated events.
Market Pulse
Earlier ProjectA local Iceberg lakehouse with incremental ingestion, dbt-on-Trino transformations, data-quality gates, and a verified end-to-end workflow.
Linux Kernel Lab
Completed LabA Linux source build, BusyBox initramfs, QEMU/GDB early-boot workflow, and character-device driver with recorded toolchain failures.
Personal Cognitive Load Monitor
Course ProjectAn educational MLOps system using synthetic data, tracked experiments, FastAPI serving, drift reports, and Kubernetes manifests.
Company Research
Earlier ProjectA full-stack company research application with a pgvector retrieval path and streamed resume-fit evaluation.
LearnOps Tracker
CompletedFull-stack DevOps learning tracker: skills, certifications, roadmap items, and analytics, with GitHub repo linking and import/export.
NoteKeeper Platform
CompletedGitOps microservices platform: three Go services, CI security gates (Gitleaks, Trivy, Cosign), and Kyverno admission policies enforced through ArgoCD.
Lay-Off-Link
Active DevelopmentEnd-to-end MLOps and data platform: model training/serving, data pipelines, and Kubernetes deployment behind a multi-stage CI/CD pipeline.
DevSecOps Lab
In ProgressA personal, from-scratch DevSecOps pipeline across multiple VMs: Jenkins security gates before pushing to a private Harbor registry and deploying via Helm to Kubernetes.
DevOps SSH Lab
CompletedSecure remote Linux administration over a private Tailscale network: SSH hardening, key-based access, and connectivity troubleshooting.