Cybersecurity student at Thompson Rivers University (Computer Network & Cybersecurity, graduating Apr 2027) in Kamloops, BC. I build security tools for software supply chains and networks, and I contribute fixes to open-source security tools.
Open to: co-op, internship, and junior security roles (SOC, AppSec, security engineering) · CompTIA Security+ (Dec 2026), then CEH jackadamslovell.com · adamsjack711@gmail.com
| Project | What it does | Stack |
|---|---|---|
| pkgxray | Checks npm packages and MCP servers before install: static analysis with cited SAFE / REVIEW / BLOCK verdicts. Never runs package code. On npm · pkgxray.ca | Node.js |
| s-ide | Security-testing IDE: sealed labs, scope default-deny, hash-chained audit log, findings traced from symptom to fix | Python · TypeScript |
| stik-cli | Passive network watcher: plain-English LAN inventory, alerts when a new device joins | Go · gopacket |
| Cernis | Detects AI-driven attacks in security logs and maps activity to MITRE ATT&CK | Python |
| slopgate | Install hook that blocks slopsquatted or hallucinated npm packages before an AI agent installs them | Go |
| HexPath | (TRU group project, in planning) IPv6 discovery, CVE enrichment, and attack-path analysis | — |
- projectdiscovery/subfinder #1809: cap untrusted source response bodies (memory-exhaustion hardening). Merged.
- projectdiscovery/naabu #1722: reject invalid port numbers. Merged.
- derailed/k9s #4116: show authentication errors instead of a misleading message. Open.
- spf13/cobra #2435: native fuzz targets for completion generation. Open.
- CorridorSecurity/hookshot #17, #18: pkgxray supply-chain install gate. Open.
Security: supply-chain analysis, static analysis, network monitoring and packet analysis, web app testing (OWASP WSTG), MITRE ATT&CK, threat modelling Languages: Go · Python · JavaScript/TypeScript · Bash Tools: Wireshark · Nmap · Docker · Linux · GitHub Actions · Git
I write threat models and design docs first (see pkgxray's threat model and architecture), test against benign and adversarial cases, and use AI pair-programming as a tool. I own the design and verify the results.
7+ years in hospitality leadership (Assistant Store Manager at Starbucks, Logjam Coffee): hiring, training, scheduling, and staying calm under pressure, which carries over to incident response and team work.