PAM · PASSWORD MANAGER · OPEN SOURCE
Self-hosted PAM + password manager platform. SSH/RDP proxy with session recording, credential vault, AD/LDAP sync, RBAC, REST API. AGPLv3 + Enterprise SaaS tier.
GoReactPostgreSQLGuacamoleMinIO
HOMELAB · CLUSTER · 20+ SERVICES
3-Node Proxmox Cluster
Production homelab on Futro S540 thin clients. Full monitoring, media stack, Nextcloud AIO, zero-trust networking. Tailscale + Cloudflare Tunnel + Authelia SSO.
ProxmoxDockerTailscaleTraefikAuthelia
AUTOMATION · PYTHON · PRODUCTION AIRFLOW
Enterprise IT Automation
Production Airflow 3 DAGs: EWS contact sync, CardComplete processing, PKC/BOE worklog reporting to SharePoint. OAuth2, Exchange SOAP, Power Platform integration.
Airflow 3PythonEWSSharePoint API
ITSM · REPORTING · JIRA
JSM Helpdesk Analyse
Analysis of 10,000+ tickets across 3 years. Identified hidden 4th workflow lane (24% of volume), 7 improvement proposals, KPI reporting framework for 440+ users.
Jira JSMData AnalysisPower BIProcess Optimization
ANALYTICS · GDPR · WEB COMPLIANCE
GDPR-Compliant Tracking Stack
End-to-end Analytics setup for production sites: GA4 via Tag Manager, Consent Mode v2, Cookie Banner integration, GCP Maps API quota management, fully DSGVO-konform.
GA4GTMCookiebotGCP ConsoleMaps API
SECURITY · ACTIVE DIRECTORY
Kerberoasting Remediation
Full triage of AD service accounts authenticating via RC4. SPN analysis, remediation roadmap, secret rotation workflow, Azure syslog forwarder setup for SIEM.
Active DirectoryKerberosAzure ArcSIEM
DESKTOP · ELECTRON · LINUX
WebApp Builder
Electron tool generating isolated .desktop web apps for GNOME/Fedora. SSO domain whitelisting (80+ domains), ad blocking, custom CSS/JS injection, per-app sessions.
ElectronJavaScriptLinuxGNOME
WEB · WORDPRESS · ELEMENTOR
Full custom Elementor kit for Bmove — EV parking app. Three design variants (light/dark/neutral), glassmorphism nav, bento grid, matrix loader, responsive mobile-first.
WordPressElementorCustom CSS/JSResponsive