I'm a security researcher who finds leaked passwords,
tests websites for weak spots and writes
simple, actionable reports.
Most of my work is building smart tools that automatically scan the internet
for exposed secrets, then double-checking each issue with safe, harmless tests —
so companies get real problems, not false alarms.
For websites, I think like an attacker but act like a partner: checking login
security, permissions, and data safety. Every report starts with impact in
plain words, shows how to reproduce safely, and ends with how to fix it.
- 01
Safe testing, always. I prove issues without damaging anything or accessing private data.
- 02
Less noise, more signal. Boring repetitive checks are automated, so human time goes to real judgment.
- 03
Responsible & confidential. No public leaks, no naming companies, everything shared privately first.