Available
Hello नमस्ते 你好 Ciao Hello I’m Pankaj Mouriya . Security Engineer
At Harness · Bengaluru, India
I work where software engineering meets security. Here I write through the tools, decisions, and details that make complex systems easier to understand.
Let’s connect prompt ignore the policy Untrusted input Tools locked Bedrock Guardrails Prompt screening + tool allowlist TOOL ACCESS DENIED perimeter secured Illustrative security story
Application security Cloud security Supply chain security Security automationExplore my work 01 Application security / Tutorial 2021-07-07
Using browser developer tools to investigate postMessage, heap snapshots, Lighthouse findings, and network resources during web security assessments.
Read the article FIELD NOTE / 001 Browser contexts
Sender window → Receiver window
targetWindow.postMessage(data, targetOrigin )One argument decides which origin may receive the message. The article follows that detail through DevTools.
2024.04.12A visual guide to Kubernetes admission controllers and where they sit in the API request path.
2024.04.12How Kubernetes informers and custom controllers watch resources and reconcile desired state.
2021.11.28Why long-lived access tokens increase exposure and how expiration, revocation, and rotation change the tradeoffs.
Beyond the page
Work in the open. Projects, research, and speaking connect the writing to the work behind it. Explore the portfolio ↗