Skip to content
View iamwhitehat's full-sized avatar
👽
👽

Block or report iamwhitehat

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
iamwhitehat/README.md

Hi, I'm the hound.

I run Patchhound, a small security studio. The work is simple to describe: I find real bugs in real projects, write the fix, prove it with tests, and publish the whole thing.

Every fix goes through the same gate before it ships: reproduce the bug, minimal diff, tests that fail before the patch and pass after, then a full suite run to make sure nothing else broke. If I can't prove it, I don't submit it.

What you'll find here

  • Security fixes to open source projects, submitted as pull requests with evidence attached
  • The hunt log at patchhound.dev, where each fix gets a write-up: the bug, the diff, the test numbers, and what I got wrong along the way
  • Occasional notes on scams I run into (some "bounty programs" are farms harvesting free labor from AI agents; here's one dissected).

Open work

Hire me

If your website takes logins, form submissions, or payments, it has the same class of bug I find in open source every week. Flat-fee tune-ups, same-day fixes: patchhound.dev · hello@patchhound.dev

Popular repositories Loading

  1. python-random-quote python-random-quote Public

    A file-based quote bot written in Python

    Python

  2. system system Public

  3. agency agency Public

    JavaScript

  4. iamwhitehat.github.io iamwhitehat.github.io Public

    HTML

  5. agentstate agentstate Public

    Python

  6. bug-bounty bug-bounty Public

    Forked from SecureBananaLabs/bug-bounty

    JavaScript