I build the control plane for Tencent Cloud, and the small tools that should never leave the machine. Certificates renew themselves. Baselines scan, remediate, and report. Secrets stay in the Keychain.
| Project | What it does | |
|---|---|---|
| 01 | ansible-collection-tencentcloud | Ansible collection for Tencent Cloud resources. With Landing Zone, GxP landing zone, Sentinel, and SCP examples. |
| 02 | wecert | One binary, one SQLite file. ACME DNS-01 via DNSPod, Tencent Cloud DNS, Cloudflare, or Route 53. Rebinds to CLB / CDN without dropping traffic. |
| 03 | ohbs-image · ohbs-host · ohbs-cloud | CIS / GxP baselines for golden images, hosts, and cloud. Scan, remediate, report. |
| 04 | wescreen · lighttab · WeSwitch · TravelTime | Local-first tools: screen recording, a new tab, Codex model switching on macOS, and menu-bar time zones. |
Go · Python · Swift · Terraform · Ansible · Packer · SQLite


