Blog
Writing software that works.
Deep dives on engineering, compliance, and the constraints that make software resilient.
Featured
All Posts
Process
I built this portfolio
What spec-driven development actually looks like when applied to a project.
9 min read
ProcessSpec-drivenDesign
Engineering
Six M-Pesa Daraja decisions that break in production
The Daraja API is well-documented. The documentation does not tell you where it hurts. Six decisions, in the order you will encounter them, that commonly fail once real money is involved.
8 min read
M-PesaKenyaPaymentsDarajaNode.js
Security
What happens to your encrypted data when quantum computers arrive
The threat is not hypothetical — it is happening right now. A practical explanation of post-quantum cryptography, the Kyber-1024 hybrid, and when you need to care.
12 min read
CryptographyPost-QuantumNode.jsKyber-1024Security
Compliance
Kenya DPA 2019 for developers: what the Act actually requires you to build
A developer's reading of the Data Protection Act 2019 — the three requirements with real architectural teeth, and what they mean for your schema, your infrastructure, and your API.
8 min read
DPA 2019KenyaComplianceData ResidencyPrivacy