🛡

Secure

Hardening and cleanup backed by graduate-level security research, not a plugin someone installed once and forgot.

  • Malware removal & recovery
  • Access control review
  • Input validation audits
  • Dependency risk checks
  • LLM prompt-injection defence

Security on small business sites is usually one plugin, installed years ago, with a dashboard nobody reads. That catches the noisy automated attacks and nothing else.

I review the things that actually matter: who can log in and with what permissions, what happens to every value a user can submit, which third-party dependencies are stale, and whether your backups would genuinely restore. Where a site has already been compromised, I clean it, close the way in, and tell you honestly what was exposed.

My master’s research is on securing systems built around large language models — specifically, detecting instructions hidden inside content those systems are asked to read. If you are adding AI features to a product, that is a conversation worth having before launch rather than after.

Let's talk about your project

New build, rescue job, or a system nobody else wants to touch. Tell me the details and I will reply with an honest answer about whether I am the right person.

Message on WhatsApp