Primary-source analysis and practitioner argument, written for people already living with these problems. Each piece is built to be verifiable, and connected to the research and tooling it comes from.
The core argument: accountability gaps in AI deployment are product-function problems, not policy problems.
Governance engineering in practice: OWASP overlays, vibe-coded risks, and what security teams need to build.
Primary-source analysis of specific regulations, translated into what they operationally require of institutions.
Short-form analysis of regulatory events, enforcement signals, and governance developments as they happen.