01 / PROFILE STUDENT DEVELOPER · INDIA

Software · Automation · Security

Building practical software while moving deeper into cybersecurity.

I am Aman Kumar Pandey, an independent student developer. I build automation frameworks, CLI utilities, and security investigation tools in public — learning systems fundamentals by shipping functional code, testing edge cases, and documenting what actually works.

FLAGSHIP PROJECT TraceForge OSINT / DFIR investigation toolkit
AUTOMATION Astra Engine Async WhatsApp Web automation
METHODOLOGY Build in public Open-source, evidence-led learning
PLATFORM Static & Local-first Fast, zero tracking, accessible

02 / SELECTED WORK

Projects with source code to inspect.

A curated list of public projects. The strongest work receives the deepest technical breakdown.

traceforge — cli workspace
$ traceforge tools ioc-extract ./incident_evidence.txt --defang
[+] Scanned 4,120 lines in 14ms (via Go native engine)
[+] Extracted 14 indicators of compromise:
    [IP]     198.51.100.24         → defanged: 198.51.100[.]24
    [IP]     203.0.113.19          → defanged: 203.0.113[.]19
    [DOMAIN] malicious-c2.test     → defanged: malicious-c2[.]test
    [URL]    http://bad.test/drop  → defanged: hxxp://bad[.]test/drop
    [HASH]   e3b0c44298fc1c149afb… → indexed SHA-256
01 / IOC Extraction & Defanging
02 / HASH SHA-256 Custody
03 / TIME Event Normalization
04 / EXPORT STIX · MISP · JSONL

CLICK TABS ABOVE TO SWITCH REAL WORKFLOW COMMANDS

01 · FLAGSHIP · OSINT & DFIR TOOLING

v1.0.1 Stable

TraceForge

A local-first command-line investigation toolkit for digital forensics, OSINT, and incident response. Engineered to run 100% offline without leaking sensitive case data to external services.

Python 3.10+ Go Native Fast-Path Bash PyPI: traceforge-osint macOS · Linux · Termux

Architecture Split: Python orchestrates the main CLI and investigation modules, while compiled Go routines provide multi-threaded fast paths for rapid SHA-256 evidence hashing and log streaming.

Case Custody & Interoperability: Features immutable evidence vaults, automatic defanging, filesystem differential baselining, and export to OASIS STIX 2.1 and MISP threat sharing formats.

02 / AUTOMATION Open Source

Astra Engine

An asynchronous Python WhatsApp Web automation library powered by Playwright. Features typed APIs, multi-device session management, event routing, phone-number pairing, and media handling.

Python Playwright AsyncIO TypeScript Bridge Event Bus
03 / FRAMEWORK Modular

Astra Userbot

Extensible WhatsApp userbot framework built on top of the Astra engine. Features dynamic plugin loading, customizable event hooks, persistent SQLite state tracking, and streamlined deployment scripts.

Python Plugin System SQLite Linux Systemd Automation
04 / SUITE Full-Featured

WhatsApp-X

An event-driven messaging automation suite featuring interactive pairing mode, media conversion pipelines, MongoDB database persistence, and deployable containerized setups.

Node.js Puppeteer MongoDB Media Pipeline Docker
05 / SYSTEMS System Admin

Windows Tools & Hardening

A menu-driven system maintenance and optimization utility for Windows. Covers temporary file cleanup, telemetry and service adjustments, power plan management, and system diagnostics.

PowerShell Batch Windows Admin Hardening

03 / CURRENT FOCUS

Practical engineering and security foundations.

I am actively channeling my software development background into a structured cybersecurity practice. Rather than collecting buzzwords, I focus on core operating systems, network protocols, threat analysis, and building reliable tools that automate repetitive technical tasks.

SECURITY TOOLING OSINT & DFIR Workflows

Building local tools for indicator processing, hashing, log triage, and baseline analysis.

SYSTEMS Linux & Networking

Deepening understanding of Linux internals, bash scripting, permissions, and network packet flow.

ENGINEERING Python · Go · Automation

Writing typed, maintainable application code paired with high-performance compiled binaries.

QUALITY Testing & Documentation

Maintaining clear documentation, automated tests, and reproducible setup scripts across repositories.

04 / SECURITY DIRECTION

Connecting software engineering with cybersecurity.

A progression path from hands-on software construction toward deeper defensive security and analysis capabilities.

01 / FOUNDATION Software & Automation

Building async engines, typed APIs, and high-throughput multi-threaded tooling.

Python Go Node.js AsyncIO
02 / INVESTIGATION OSINT & DFIR Tooling

Local evidence vaults, hash chain-of-custody, log triage, and memory baselining.

TraceForge STIX 2.1 MISP PCAP
03 / SYSTEMS Linux & Networking

Operating system internals, packet flow analysis, firewall filtering, and POSIX permissions.

Wireshark tshark iptables Termux
04 / APPLICATION Defensive Practice

Security automation, vulnerability research, threat correlation, and hands-on lab exercises.

OWASP CTF Labs Auditd Hardening

05 / NOTES & CASE STUDIES

Authentic write-ups from real project challenges.

In-depth technical articles and architecture breakdowns published as projects evolve.

FEATURED ARTICLE · CASE STUDY 01 Inside TraceForge: Engineering a Local-First OSINT & DFIR Toolkit

Why I built TraceForge, how I split performance-critical workloads between Python and Go, and the practical systems lessons learned along the way.

Read Case Study

06 / ABOUT

Student developer. Builder first.

I enjoy learning how computer systems operate by writing software that solves concrete problems. My public work encompasses automation libraries, systems utilities, and investigative tooling.

My goal is straightforward: write robust code, strengthen core security skills, and contribute transparent, well-documented tools to the open-source ecosystem.

GITHUB @paman7647 ↗
STATUS Student Developer · Building in Public
CORE INTERESTS Software Engineering · Cybersecurity · Systems · Automation

07 / CONTACT

Connect around projects or ideas.

GitHub is the primary place to inspect my code, review issues, and follow ongoing work. For direct inquiries, send a message through the form.

Submissions are securely routed via Web3Forms. No tracking cookies or client-side marketing scripts are used.