Openclaw deployment hardening
Secure OpenClaw deployments with preflight hardening checks, CI/CD guardrails, container runtime restrictions, and post-deploy verification.
Skills for your AI
Secure OpenClaw deployments with preflight hardening checks, CI/CD guardrails, container runtime restrictions, and post-deploy verification.
Set up OpenClaw locally and run it reliably on a Mac mini for private, always-on local agent workflows.
Harden OpenClaw self-hosted environments with baseline host controls, auth tightening, secret handling, network segmentation, and safe update/rollback workflows.
Manage Red Hat OpenShift clusters and deployments.
Instrument applications and infrastructure with OpenTelemetry for unified traces, metrics, and logs.
Migrate from Terraform to OpenTofu with state compatibility, provider registry setup, and CI/CD pipeline updates. Use when adopting the open-source Terraform fork or evaluating license-free IaC.
Comprehensive OSINT methodology for external red-team operations and authorized attack-surface assessments.
Implement PCI DSS requirements for payment card data. Configure cardholder data environment and security controls. Use when processing payment cards.
Perform basic penetration testing and security assessments.
Optimize Linux system performance. Configure kernel parameters, analyze bottlenecks, and tune resources. Use when improving system performance.
Operate MySQL-compatible databases on PlanetScale with branching workflows, safe migrations, and production rollouts.
Build internal developer platforms (IDPs) with self-service infrastructure, golden paths, and developer portals using Backstage, Crossplane, and score.
Manage containers using Podman, the daemonless container engine.
Implement policy as code with OPA, Sentinel, and Kyverno. Automate policy enforcement in CI/CD and infrastructure. Use when enforcing compliance through automation.
Administer PostgreSQL databases. Configure replication, backups, and performance tuning. Use when managing PostgreSQL deployments.
Set up metrics collection and visualization with Prometheus and Grafana.
Defend AI systems against prompt injection and indirect prompt attacks using input controls, tool permissions, output validation, and isolation boundaries.
Build and operate Retrieval-Augmented Generation (RAG) infrastructure with vector stores, embedding pipelines, and hybrid search.
Monitor and evaluate RAG systems with retrieval quality metrics, groundedness checks, hallucination detection, and continuous regression testing.
Triage ASM/recon output for ownership before testing
Configure Redis for caching and data storage. Set up clustering, persistence, and Sentinel. Use when implementing Redis caching or queues.
Red-team operator discipline
Client-facing red-team deliverable format
Bug bounty report writing for H1/Bugcrowd/Intigriti/Immunefi