SunnyKumar Jonwal
$ cybersecurity analyst
I build software and then spend my evenings finding out how it fails. Full-stack engineering by day, offensive security and bug hunting by night — the two habits sharpen each other.
0+
Years shipping code
0
Projects delivered
0+
Vulnerabilities reported
0
Certifications held
Two disciplines, one toolkit
All services →01
Build
Product engineering end to end — React front ends, typed APIs, and the boring infrastructure that keeps them up at 3am.
02
Break
Penetration testing and adversarial review of web apps, APIs and cloud accounts. Findings you can actually act on.
03
Harden
Threat modelling, secure code review and CI pipelines that fail the build before an attacker gets a turn.
Selected work
All projects →Sentinel
A continuous attack-surface monitor. It enumerates subdomains, ports and certificates on a schedule, diffs each run against the last, and alerts only on genuine change — new host, new open port, expiring cert.
Go · Postgres · Redis · Docker
Ledgerly
Multi-tenant billing for small SaaS teams: recurring invoices, proration, dunning emails and revenue reporting, with a strict tenant-isolation model enforced at the query layer rather than in application code.
TypeScript · Next.js · Stripe · Prisma