lewismud leaderboard
ActiveBuilt a live leaderboard platform for streamer LewisMud using Dejen's API and Python. Handles real-time data processing and ranking with a clean display architecture.
Building systems that automate workflows, process data at scale,
and ship as clean products. Python, scraping, backends, and web.
Built a live leaderboard platform for streamer LewisMud using Dejen's API and Python. Handles real-time data processing and ranking with a clean display architecture.
Building systems that automate content generation, media production, and platform distribution at scale — turning AI-generated personalities into self-sustaining creator pipelines.
Automated clipping platform using X/Twitter's unofficial API and Python to generate and distribute clips automatically across platforms.
Receipt generation system using discord.py and scraping infrastructure, collecting and formatting data from 50+ fashion brands into realistic email receipts.
Most recent samples — using a mix of AI-assisted and manual research I've identified 60+ exposed endpoints leaking PII and other sensitive fields across various platforms. I also specialise in mobile API security: reverse engineering APKs/IPAs, decompiling app binaries, and extracting hardcoded endpoints, tokens, and sensitive data through static analysis and AI-assisted manual dumping.
Biconomy.com — PII Disclosure
Found · 06/26POSTing a username to Biconomy's OpenAPI endpoint returns full account data — email, phone number, country, and session token — with no authentication required. Allows enumeration of any registered user's PII by username alone.
casa.io — Email Enumeration
Found · 06/26POSTing an email to casa.io's connect endpoint either confirms the account exists and returns the user's WebAuthn passkey challenge data, or returns "User not found" — enabling email enumeration and leaking auth credentials without any prior session.
I build systems that automate repetitive workflows, process large amounts of data, and turn messy infrastructure into clean products.
My work sits at the intersection of backend engineering, automation tooling, and product thinking. I care about building things that actually work — systems that scale cleanly, pipelines that don't break, and interfaces that stay out of the way.