#cloudflare
2 posts
Hardening a static site: pinned actions, least privilege, and a CSP that can't drift
A portfolio site has no backend, but its build pipeline and the edge in front of it still deserve a threat model. What I changed and why.
Rebuilding my portfolio as an ops console, and hosting it for $0
How I redesigned sanjayhona.com.np around SRE ideas, and how two static sites share one repo across GitHub Pages and Cloudflare Pages.