We build on open source. We build it back

Every system we ship stands on open infrastructure. This registry documents how we engage with that ecosystem: the principles we follow, and the areas where tooling from our engagements is generalized and released.

Engagement Principles

How we participate

01Upstream First

Fixes and improvements to the libraries we depend on go back upstream, not into private forks that rot.

02Clean Licensing

Every dependency in a client system is license-audited. Releases from our own work ship under permissive licenses.

03Responsible Disclosure

Vulnerabilities we uncover during audits are reported privately to maintainers and disclosed on their timeline.

04Maintainer Support

We sponsor and contribute engineering time to the critical projects our production stacks are built on.

Release Pipeline

Tooling focus areas

Where client-funded engineering is generalized into reusable tooling, subject to IP agreements and security review before any public release.

Reliability Tooling

Chaos & Verification Harnesses

Test harnesses for failure injection, shadow-traffic diffing, and cutover verification, generalized from engagement work.

Data Infrastructure

Streaming Pipeline Utilities

Connectors, schema-migration gates, and replay tooling for change-data-capture and event-stream pipelines.

Performance

Profiling & Benchmark Kits

Reproducible load-generation and flame-graph tooling used in our architectural audits, packaged for general use.

Maintain a project we should be supporting?

If your project sits in one of our production stacks, we would like to hear from you, for sponsorship, contribution, or coordinated security work.

Book a 15 minute call

Pick a time that suits you. Tell us what stalled and we’ll come back with an honest read on what it takes to finish.