Senior Backend / Platform Engineer
TypeScript · Node.js · Go · Python · PostgreSQL
Building reliable product and platform systems from ambiguous requirements to verified production.
I design and ship backend-heavy product systems: data models, APIs, integrations, background workflows, authentication and authorization, testing, deployment, observability, and incident recovery. I can deliver the complete product vertical with React/Next.js or SvelteKit, while my strongest work is in backend architecture, data integrity, and production reliability.
Recent work spans multi-tenant B2B SaaS, procurement workflows, industrial telemetry, collaborative business software, secure messaging, developer tooling, and deterministic financial analytics.
I work evidence-first: explicit invariants, transaction and concurrency boundaries, test-driven changes, exact artifact identity, fresh-clone verification, and rollback-aware production delivery.
| System | Scope | Engineering signal |
|---|---|---|
| AURA | Privacy-first browser-based Nostr messenger with encrypted one-to-one messaging, signed invitations, Passkey/PRF identity custody, device linking, relay replay, and durable inbox/outbox persistence | Solo-built and released with explicit custody and delivery semantics, fail-closed boundaries, unit tests, and browser E2E coverage |
| TenderHQ | Multi-tenant procurement product with ingestion, scoring, CRM, AI document workflows, background jobs, auth, and operations tooling | Reduced pending queue work by more than 90% by restoring a missing domain invariant; hardened tenant isolation across secondary lookups and document paths |
| Industrial telemetry platform | Read-only upper software/data contour around MQTT, PostgreSQL/TimescaleDB, alerts, APIs, and operational workflows | Batched persistence, WAL-based crash recovery, deduplication, bounded time-series queries, health checks, and exact-artifact delivery |
| Collaborative business platform | Backend and integration boundaries for versioned, synchronized business workflows | Integrated a canonical visual editor through explicit adapters and contract tests, migrated active consumers, and removed the legacy compatibility path after parity proof |
| Repository | Engineering focus |
|---|---|
| AURA | TypeScript, secure stateful workflows, WebAuthn custody, Nostr protocol integration, durable browser storage, Vitest, and Playwright |
| service-slo-watchdog | Dependency-free Python SLO probes, bounded HTTP transport, atomic alert/recovery state, corruption recovery, and deduplicated transitions |
| exact-source-audit | Exact Git-index secret scanning and deterministic CycloneDX SBOM generation without dereferencing worktree symlinks or printing secret values |
| git-activity-analysis-core | Privacy-aware local Git scanning, deterministic repository analytics, Conventional Commit classification, and resource-bounded clustering |
| order-risk-engine | Decimal-only, exchange-neutral pre-trade sizing with explicit notional, risk, leverage, quantity-step, and portfolio limits |
| fifo-cost-basis | Decimal FIFO lot matching, proportional fee allocation, realized PnL, open lots, partial coverage, and explicit quality flags |
| schema-evolution-planner | Deterministic flat-schema evolution plans with injected type compatibility, stable fingerprints, and explicit migration resolutions |
| canvas-geometry | Low-level 2D geometry, collision semantics, spatial indexing, Canvas rendering, and deterministic server animation backed by 1,627 behavior tests |
| modbus-edge-agent | Python, read-only Modbus RTU, semantic register decoding, synthetic provenance, credential-free durable buffering, MQTT QoS 1, and hardened systemd packaging |
| deterministic-sphere-network | Seeded Fibonacci-sphere geometry, bounded-degree proximity graphs, strict numeric guards, and GPU-ready typed buffers |
| totp-recovery-kit | RFC 6238 vectors, replay-step authority, identity-bound AES-256-GCM TOTP envelopes, and Argon2id hash-only recovery codes |
| connector-contracts | Strict versioned connector manifests, bounded event envelopes, prototype-safe payload validation, and domain-separated signature bytes |
Additional focused libraries: canonical-json-fingerprint, typed-unit-system, and async-control. Broader toolkits: ru-procurement-toolkit and fmy-stack.
The focused repositories use explicit licenses and security boundaries, hosted CI across supported runtimes, versioned release artifacts, and fresh-clone/package verification.
18 merged pull requests across Svelte, SvelteKit, Biome, and OXC.
| Project | Merged work |
|---|---|
| Svelte | 7 PRs: compiler/runtime fixes, accessibility behavior, migration docs, and test maintenance |
| SvelteKit | 6 PRs: precompression, navigation types, history API compatibility, warning behavior, and docs |
| Bio B9B8 me | 3 PRs: TypeScript-aware lint fixes, import cleanup correctness, and async-generator handling |
| OXC | 2 PRs: actionable diagnostics and formatter-directive handling |
Open to Senior Backend / Platform Engineer, Product Engineer, Tech Lead, and hands-on engineering leadership opportunities. Remote contract or full-time.