Caution
Please report security bugs in .NET and other Microsoft projects via https://msrc.microsoft.com/report/
Security bugs in .NET reported via MSRC can be eligble for the .NET Bug Bounty.
- ๐ผ For work I try to keep .NET and its ecosystem secure through design reviews, threat models and other processes.
- ๐ Here I write bad code including code for
- ๐ฆ Wrapping AtProto and Bluesky APIs in a .NET class library,
- ๐ Random security classes for .NET, including an SSRF protection library.
- ๐ Authentication middleware for ASP.NET Core,
- ๐ Examples of insecure code for demonstrations and conferences talks.
๐ You can reach me on Bluesky as blowdart.me
Authenticode Signing Certifcates contains details of my Authenticode signing certificates, and how to verify nupkgs, assemblies and executables signed with them.
SSH Allowed Signers contains details of my SSH keys used to sign git commits and tags, and how to verify signatures with them.







