Skip to content
View iderex's full-sized avatar
🎯
Focusing
🎯
Focusing

Highlights

  • Pro

Block or report iderex

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
iderex/README.md

Nils Lehnen

IT security for critical healthcare infrastructure, and for the small businesses nobody else looks after. Since 2017, from Düsseldorf.

I work on the load-bearing parts: fail-closed defaults, audit trails that hold up under scrutiny, and software that runs inside your own network rather than somebody else's. Most of what I publish comes out of that work. If a tool has to be trusted with something that matters, it should be possible to read it and check it.

Current work

Flowfin

Native clients and server plugins for Jellyfin, held to a speed budget written as numbers a build can miss rather than as an intention. Twelve plugins, a shared design system, and colour presets for each form of colour vision deficiency rather than a single accessible mode.

jellyfin-plugin-sso · C#, .NET 9

Single sign-on for Jellyfin over OpenID Connect and SAML 2.0, with verified setup guides for Keycloak, Authelia, authentik, Dex, Pocket ID, Kanidm and Zitadel. A security-first continuation of the archived 9p4/jellyfin-plugin-sso.

cudec · C++, CUDA

GPU decompression that is auditable and fuzz-tested. LZ4 batch decoding on NVIDIA hardware today; Snappy, GDeflate and Zstd planned.

swarm.asm · x64 assembly

A particle-life engine written entirely in hand-written x64 assembly with AVX2. The target is a million particles at 60 frames per second, with no GPU, no dependencies and one small executable.

linux · C

Working tree for Linux kernel development and upstream contributions.

Languages

C, C++ with CUDA, C#, Rust, and x64 assembly. Different problems, the same habit: make the illegal state impossible to write down, then check that it is.

Support

If something here saved you time, you can buy me a coffee.

See NOTICE.md for the intended-use notice.

Pinned Loading

  1. cudec cudec Public

    Auditable, fail-closed, fuzz-tested GPU decompression in CUDA C++ — LZ4 batch-decoded on NVIDIA GPUs today; Snappy, GDeflate, and Zstd planned.

    C++ 1

  2. Flowfin/jellyfin-plugin-sso Flowfin/jellyfin-plugin-sso Public

    Single sign-on for Jellyfin via OpenID Connect & SAML 2.0 - a security-first revival of the archived 9p4/jellyfin-plugin-sso, for Jellyfin 10.11 (.NET 9) and 12.0 (.NET 10).

    C# 7 1

  3. swarm.asm swarm.asm Public

    A Particle Life engine written entirely in hand-written x64 assembly. Goal: 1,000,000 particles at 60 fps - no GPU, no dependencies, one small exe.

    C# 1

  4. iso27000-isms iso27000-isms Public

    The ISO/IEC 27000 family and an ISMS, worked scientifically: clause references only, no normative text, original artefacts

    Python 1

  5. Flowfin/jellyfin-plugin-share-links Flowfin/jellyfin-plugin-share-links Public

    Share single Jellyfin items with invited, signed-in guests through expiring links

    C# 1

  6. Flowfin/jellyfin-plugin-stats Flowfin/jellyfin-plugin-stats Public

    Playback and transcode statistics for the Jellyfin dashboard

    C# 1