I build developer tooling, local-first workflows, and small systems that make software easier to run, test, and trust.
I’m especially interested in modern secure-by-default infrastructure: lightweight virtualization, reproducible environments, signed supply chains, sandboxed execution, and minimal operating systems.
Current focus:
- Developer experience: CLIs, automation, devcontainers, and repeatable workflows
- Secure foundations: Incus, Flatcar Container Linux, sandboxing, isolation, and least-privilege defaults
- Practical systems: Go, TypeScript, Python, Linux, containers, and CI/CD
- Tools that stay small, understandable, and useful
Primary project right now:
- pid — agent orchestration tool
Other projects:


