Intake
Vendor advisory, affected product, versions, CVSS, exploit status, and source reliability.
Professional security research
This research surface frames vulnerability work as authorized analysis: intake, validation, detection, remediation, reporting, and release safety.
Research pipeline
Vendor advisory, affected product, versions, CVSS, exploit status, and source reliability.
Exposure class, asset owner, business impact, patch path, and compensating controls.
Authorized review notes, screenshots, logs, and non-destructive verification evidence.
Indicators, safe queries, log fields, telemetry sources, and alert logic.
Patch guidance, mitigation checklist, owner assignment, and verification date.
Engineering plus research
PersonFu should read as someone who can build the product, operate the deployment, verify the release, triage vulnerabilities, and communicate risk clearly. That is a stronger professional signal than generic cyber visuals.
Security policy, metadata, robots, sitemap, and cache behavior reviewed.
Framework and package surfaces tracked through release notes and upgrade checks.
Every change should include scope, risk, rollback, and validation notes.
Service cards
Headers, robots, sitemap, metadata, DNS posture, uptime flow, and deployment audit.
Input handling, auth boundaries, dependency review, error states, and logging quality.
CVE summary, affected versions, exploitability context, mitigations, and executive notes.
Pre-production checklist, rollback notes, monitoring links, and final approval status.