LogLens
C++20 defensive log analysis CLI for Linux auth evidence, with parser coverage telemetry and deterministic report output.
I build small public repositories that are intentionally narrow, reproducible, and easy to inspect. The main arc is systems foundations into telemetry and monitoring, then into defensive security tooling and public-safe security writing.
C++20 defensive log analysis CLI for Linux auth evidence, with parser coverage telemetry and deterministic report output.
Deterministic telemetry and detection demos for windowing, dedup, bounded AI-assisted case drafting, and config-change investigation.
Deterministic repository hygiene and lightweight secret-adjacent scanning with baselines and pre-commit integration.
Flagship-led scientific and supply-chain review infrastructure centered on the deterministic `sbom-diff-and-risk` tool.
Linux auth and networking-state mini-labs that turn low-level evidence into reviewable normalized artifacts.
Public, sanitized security notes with explicit publication boundaries, taxonomy, and reviewer-friendly governance.
Why the project is intentionally a small telemetry asset instead of a platform, and how the pipeline is structured.
A systems note on turning shell and text-processing work into reusable, inspectable workflows.
A public-safe blue-team note on SOC roles, triage flow, alert meaning, and why context decides whether a detection matters.