Senior software engineer with over 14 years of experience building secure, decentralized systems. I work in core protocol level development, self-sovereign identity (SSI/DID), and verifiable credentials, with systems programming in Rust, TypeScript, Java, and C, and earlier work across blockchain, decentralized identity, hardware wallets, and key-management solutions including India's Aadhaar program.
| Languages: | Rust, TypeScript, Java, C, C++, Haskell |
| Blockchain & Web3: | Core Protocol Development, EIP Implementation, Solidity, Light Clients (Incubed / in3), SSZ, libp2p |
| AI & LLM Systems: | MCP, LLM Agent Tooling, Tool-Use Protocols, Provenance / Taint Tracking |
| Identity & Security: | SSI / DID, Verifiable Credentials, PKI, Key Management, Hardware Wallets (Ledger), Reference Monitors, Threat Modeling |
| Frameworks: | Tokio (async Rust), Rocket, Next.js, Express, NestJS, Spring, JNI |
| Databases: | PostgreSQL, TypeORM, Hibernate |
| DevOps & Tools: | Docker, AWS, GitHub Actions, Kurtosis, Cargo, CI/CD pipelines |
| Domain Expertise: | Core Protocol Development, SSI/DID, Hardware Wallet Development, Identity & Security Solutions, Key Management |
Customhouse: Deterministic MCP Proxy (v0.2.0, in development) An MCP proxy that blocks prompt-injection-driven exfiltration by provenance rather than by inspecting content. It tracks which upstream every input came from and deterministically denies payment, egress, and external-send calls in any session that has received untrusted content, so a block cannot be evaded by rewording or re-encoding the payload, with no model in the decision path. As the sole author, I built the proxy, the provenance tracking, and the flow policy engine. Measured at a 100% block rate across injection scenarios and a 40% false-positive rate on benign workflows that use sinks. Tech: Rust, MCP, Tokio. GitHub
MyID: Secure Digital Identity Wallet (Veriguard) (Live on Play Store, in active development) Architect and contributor on a self-sovereign identity wallet for India that lets people securely store, manage, and share documents, credentials, and business cards with bank-level encryption, while enabling enterprises to issue and verify W3C verifiable credentials. Built on Hyperledger Indy with Credo (Aries protocol) agents, DigiLocker and Aadhaar eKYC onboarding, and zero-knowledge selective-disclosure proofs. Tech: Credo, DIDComm, Verifiable Credentials, ZKPs. Website • Play Store
EIP-7745 Proof of Concept: Prototyped a simplified SSZ-based log value index with FilterMap bitmap organization and deterministic value-to-position mapping; tested in a Kurtosis devnet. Tech: Nim, Kurtosis, Core Protocol. Report
DVRPC: Decentralized Verified RPC (Under development) A drop-in replacement for standard Ethereum RPC that returns cryptographically verified responses by pairing a light client with EIP-1186 Merkle-Patricia-Trie proofs verified against a consensus-derived state root. As the sole author, I built the JSON-RPC server, light client integration, proof fetching, and MPT verification engine. Tech: Rust, Tokio, libp2p, jsonrpsee, alloy. GitHub
Vade SDK (SSI / DID): An SSI/DID SDK and microservices in Rust and TypeScript implementing DIF specifications, DID communication, and VC/Presentation protocols, with Rust bindings for C and Java. Tech: Rust, TypeScript, NestJS. GitHub
Identity & Data Management POC: Enterprise blockchain to establish trust among stakeholders and prevent fraud, using hardware wallets and PKI for authentication and attestation. Tech: Haskell, C.
Aadhaar Registered Biometric Devices (UIDAI): Device key management against a vendor HSM server and the specification for device-to-server communication preventing biometric replay. Tech: C, Java.
MasterCard EMV: Biometric: APDU library for smart-card communication enabling on-card biometric storage and verification. Tech: Java, Android.
Hindi (Native)
English (Professional)