Skip to content
View steadytao's full-sized avatar
🤔
🤔

Organizations

@caddyserver

Block or report steadytao

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
steadytao/README.md
  Zen Dodd

Website My Writing Contact Me Sponsor

Local-first tools, security evidence and infrastructure systems that stay reviewable.

I am a FOSS maintainer, security researcher and infrastructure-focused engineer. My work sits around the parts of software that need to stay understandable under pressure: HTTP and TLS behaviour, reverse proxy edge cases, release evidence, infrastructure review, vulnerability validation and project history.

I build local-first tools that produce durable artefacts rather than opaque output. The goal is usually the same: make decisions easier to inspect, reproduce and carry forward after the original platform, issue tracker, cloud account or release page is no longer the source of truth.

Selected Work

Local-first infrastructure planning and evidence engine for typed plans, architecture graphs, validation output, risk notes, cost notes, diagrams and release packs.

Go Infrastructure Evidence Release Packs

Local CLI for exporting and managing portable project history for Git repositories.

Go Git Ledger Project History

Post-quantum readiness and cryptographic inventory proof of concept.

Cryptography Inventory PQ Readiness

Source for my personal website and writing archive.

Website Writing Astro

Maintainer Work

Caddy is my main upstream maintenance focus. I work on issue triage, code review, security report validation, HTTP/TLS correctness, Caddyfile behaviour, reverse proxy edge cases and release-quality fixes.

Caddy PRs Caddy Issues caddyserver

Security Research

I focus on practical vulnerability analysis rather than volume reporting: source review, behaviour reproduction, severity calibration and a fix path that maintainers can actually merge.

Engineering Focus

Good output should be easy to diff, easy to verify and useful after the run has finished. I prefer tools that make uncertainty visible instead of hiding it behind compatibility claims.

Tooling

Systems & Runtime

Go C++ C C# .NET Assembly x86 Java PHP

Web & Application

TypeScript JavaScript Node.js HTML CSS Astro

Scripting, Data & Formats

Python PowerShell Bash SQL JSON YAML jq

Infrastructure & Operations

AWS Terraform OpenTofu Kubernetes Docker Podman Tailscale Linux Windows

Build & Automation

GitHub Actions Make



GitHub LinkedIn GitHub Sponsors

Pinned Loading

  1. planwright planwright Public

    Local-first infrastructure graph, validation and evidence engine

    Go 2

  2. waystone waystone Public

    Portable project history for Git repositories

    Go 1

  3. caddyserver/caddy caddyserver/caddy Public

    Fast and extensible multi-platform HTTP/1-2-3 web server with automatic HTTPS

    Go 72.9k 4.8k