Security engineering, open infrastructure, and AI evaluation for systems that should fail visibly, not silently.
mazzeleczzare.com · ORCID · Get in touch
Systems reveal themselves under pressure — that's the working premise behind everything in this profile. I build and test for observable state: security tooling, privacy-preserving infrastructure, and human-AI systems designed so that failure surfaces early instead of getting buried under a passing test suite.
Every project here is built against the same constraint: it has to work, be auditable, and be legible to people who aren't security engineers.
- Hardening privacy-first, local-first infrastructure (Meridian, mindful-dev)
- Building policy guardrails and integrity telemetry for agentic AI (praxis-aegis, stele)
- Extending forensic tooling and MCP-server infrastructure (git-forensics-agent, kairos-mcp)
- Writing on privacy infrastructure and human–AI collaboration
| Domain | Focus | Typical output |
|---|---|---|
| Security & privacy infrastructure | Threat-informed hardening, container/CI security, adversarial-conditions design | tooling, templates, audits |
| Trustworthy & agentic AI | Policy guardrails, integrity telemetry, epistemic decision logging | guardrail libraries, ledgers, research notes |
| Apps & product design | Local-first sync, E2E-encrypted social systems, editorial platforms | shipped apps, calm UX under real constraints |
The load-bearing layer — the sites where the evidence checks out cleanly against the claims. Not a "best of," a "checked."
- mazze-leczzare-blog — 16 published essays, five green CI pipelines (build, CodeQL, dependency review, docs integrity, Lighthouse), live.
- secure-container-template — non-root enforcement gated in CI, actions pinned to commit SHAs, a release that's actually shipped.
- kairos-mcp — MCP server for reasoning frameworks, dual transport, real tests, clean dependency hygiene.
- github-mcp-gateway — GitHub App OAuth gateway for MCP clients, in active daily use.
- stratum — dual Python/TS implementation with parity checked in CI, doc-drift detection, a live Cloudflare Worker demo.
Three exposures, drilled from the same face. Expand a core sample to see what's in it.
Security & privacy infrastructure
| Project | What it does |
|---|---|
| secure-pride | Privacy-first cybersecurity tools and standards for LGBTQ+ communities and high-risk groups, built for adversarial conditions |
| git-forensics-agent | Zero-knowledge forensic case-file agent for adversarial git incidents — Durable Object brain, AES-256-GCM, HMAC-signed repair gate |
| mindful-dev | Claude Code pre-action safety gate — blocks dangerous commands, redacts secrets, guards shell access |
Trustworthy AI & agentic systems
| Project | What it does | Live |
|---|---|---|
| praxis-aegis | Trust-layer for agentic AI: policy guardrails and signing-aware controls for AI tool use | — |
| stele | Directive compiler and integrity telemetry — governance-as-code for AI-assisted work | stele.mazzeleczzare.com |
| context-synapse | Experimental engine for modeling how humans and AI systems negotiate context | — |
| adaptive-response | Schema-driven AI response engine — Cloudflare Worker + Zod-validated typed output, deny-by-default CORS | — |
Apps & product design
| Project | What it does |
|---|---|
| meridian | Privacy-first, local-first calendar for Apple platforms — Tailscale-only peer sync, no cloud |
| lockr | Privacy-first dating and social app for the LGBTQ+ community — E2E encryption, safety-first design |
| daedalus-switch | Identity & context switcher — one command switches VPN, terminal, browser, and filesystem context |
The instruments that show up across these sites, not a full résumé of tools.
Essays, technical notes, and research on privacy infrastructure, human–AI collaboration, and open-source systems thinking.
→ mazzeleczzare.com · ORCID 0009-0005-9661-4780
Software should be secure, humane, understandable, and accessible to people who aren't security engineers.
That's not a nice-to-have. That's the constraint every project here is built against.
Open to collaboration on privacy tooling, secure infrastructure, and human–AI systems — especially with researchers, independent builders, and mission-driven organizations.
Open an issue, or reach out directly.



