Change the repository type filter
All
Repositories list
19 repositories
mcp-opa
Publicidentity-deep-dive
Publicmcp-authzen
PublicMCP server fronting an OpenID AuthZEN 1.0 PDP — lets LLM agents query a real Policy Decision Pointzopa
PublicPolicy engine for proxy-wasm. ~60 KB wasm, written in Zig.aws-deepdive
Public archiveWeekly deep-dive reports on AWS — IAM/identity focused, automatically collected via GitHub Actions and published as a static site.dev.to
Public- Eight locally-verified microsegmentation patterns (K8s NetworkPolicy, Cilium L7, Calico, Istio mTLS, SPIFFE/SPIRE, nftables, OPA Gatekeeper, LocalStack AWS SG)
sigil
Public archivesecure-by-default github template for oss: signed commits, sha-pinned actions, slsa v1.0 provenance, sigstore keyless signing, npm oidc publishing.chainscope
Public archiveA visual explainer for software supply chain security: six stages, six real attacks, six defenses.webauthn-the-hard-way
Public archiveBuild a WebAuthn Relying Party from scratch: CBOR, COSE, attestation, signature verification by hand. No py_webauthn, no fido2 library.sigv4-100lines-py
Public archivezeus
Public archiveMCP-first code editor, built on a VS Code fork.envoy-xds-deep-dive
Public archiveA read-top-to-bottom, hands-on deep dive into Envoy's xDS APIs (LDS, RDS, CDS, EDS) with verified labs from static config to a pod-to-pod mesh on kind. Bilingua…awscape
Public archive- SPIFFE compliance hands-on: boot SPIRE locally, fetch real SVIDs, verify them against the spec's MUST requirements with openssl and jq.
hello-slsa
Public archiveMinimal end-to-end demo of SLSA Build L3 provenance: a 12-line Go binary that signs its own provenance on every tag, plus a verifier walkthrough.ietf-wg-wimse-deep-dive
Public archive.github
Public
ProTip! When viewing an organization's repositories, you can use the
props. filter to filter by custom property.