Skip to content
@Developmi

Developmi

Personal engineering brand focused on infrastructure, cloud, networking, DevSecOps, and open source tooling.

Developmi

Engineering that returns control, efficiency and data sovereignty to the organizations that run it.

Building secure, reproducible and production-inspired engineering projects.


About

Developmi is the personal engineering brand of Miguel Lozano.

This organization hosts open-source projects focused on infrastructure engineering, networking, DevSecOps, cloud architecture, security automation, and self-hosted platforms.

The goal is simple:

  • Build practical engineering tools.
  • Share production-inspired architectures.
  • Promote infrastructure sovereignty.
  • Contribute reusable open-source components.

Projects here are production-tested. Not prototypes. Developmi is not a company and does not provide commercial support through this organization. Client-specific implementations, proprietary Infrastructure as Code, and consulting deliverables remain private.


Focus Areas

  • ☁️ Cloud & Infrastructure Engineering
  • 🛡️ DevSecOps
  • 🌐 Networking
  • 🔥 Caddy & Coraza WAF
  • 🏗️ Infrastructure as Code
  • 📦 Self-hosted Platforms
  • 📈 Observability
  • 🔐 Zero Trust
  • 📚 NIST-aligned Hardening
  • 💾 Disaster Recovery

Featured Projects

🛡️ Caddy WAF

Production-hardened Docker image - Caddy + Coraza WAF + OWASP CRS v4.29.0. Cosign-signed, SLSA provenance, Trivy scanning, non-root (UID 1337), multi-arch amd64/arm64.

🖥️ Caddy WAF UI

Management UI for caddy-waf. Go stdlib only, zero runtime dependencies. Centralized control plane for WAF rules, logs and threat visibility.

⚙️ Hardened

Ansible framework for bare metal - NIST 800-53 aligned, Tailscale zero-trust mesh, CrowdSec, Vault-backed secrets, Molecule tested.

Sovereign ELT platform - dlt + dbt + ClickHouse + Metabase. Multi-tenant, RBAC-isolated, 93 automated quality tests in production.


Engineering Principles

Developmi projects follow a consistent engineering philosophy:

  • Security by Default
  • Reproducible Builds
  • Infrastructure as Code
  • Supply Chain Security
  • Minimal Operational Complexity
  • Automation First
  • Semantic Versioning
  • Open Standards

Open Source

Open-source repositories published here represent reusable engineering components intended for the community.

Commercial implementations, customer infrastructure, and proprietary automation remain outside this organization.


Philosophy

Security is not a feature; it is the baseline.


Developmi
Personal Engineering Brand by Miguel Lozano

Website Email LinkedIn GitHub

Popular repositories Loading

  1. caddy-waf caddy-waf Public

    Hardened Caddy + Coraza WAF container with OWASP CRS. Non-root execution, automatic TLS, rate limiting, Cosign-signed images, and SLSA provenance

    Shell 1

  2. multitenant-elt multitenant-elt Public

    Multi-tenant ELT pipeline with dlt and dbt Core: 10 platform connectors, per-tenant schema isolation on PostgreSQL 16, Pydantic contracts, and Metabase dashboards.

    Python 1 1

  3. .github .github Public

  4. hardened hardened Public

    Layered Ansible infrastructure automation for bare-metal & VPS. NIST 800-53 baseline, CIS Level 1, Tailscale zero-trust mesh, CrowdSec defense, and SOPS/age secrets.

    Jinja

  5. caddy-waf-ui caddy-waf-ui Public

    Lightweight sidecar management UI for caddy-waf. Control per-site WAF modes, OWASP CRS exclusions, IP rules, and rollbacks without modifying base Caddyfiles.

    Go

Repositories

Showing 5 of 5 repositories

People

This organization has no public members. You must be a member to see who’s a part of this organization.

Top languages

Loading…

Most used topics

Loading…