I build things at the bottom of the stack — post-quantum cryptography, verified compilers, identity that doesn't retain anything. Forty years in, still mostly interested in what happens below the abstraction. CTO at Eoncore; I write Kryptonomicon about algorithms that are dead but haven't been told yet.
Writing
- 2026-08 Estimation is not assurance Why "probably over 18" won't survive an audit.
- 2026-06 Homoiconic critical software Macros as compiler passes, expansion as audit trail.
- 2026-04 The shortest toolchain you can trust On shrinking the trusted base until you can read all of it.
Building
-
Identifiedidentified.app
Document-backed identity verification. The platform learns that you're verified and nothing else.
-
RootwerkATProto
Professional identity you actually own, as signed records in your own PDS.
-
EoncorePQC
Post-quantum readiness: cryptographic inventory, migration, formally verified toolchains.