Skip to content
View homeofe's full-sized avatar

Organizations

@elvatis

Block or report homeofe

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
homeofe/README.md

Hi, I'm Emre πŸ‘‹

IT Manager | Information Security Coordinator | Data Protection Coordinator | Certified Data Protection Officer

Building security tools and compliance platforms. Background in TISAX AL3 certification and NIS2 implementation. Working with SMEs in manufacturing, advertising agencies, and creative industries on security compliance and digital transformation.

πŸ‡©πŸ‡ͺ Munich, Bavaria Β· Available for EU compliance projects

🌈 I build a lot, ship a lot, and I do it in colored suits, because life is too short for grey.

🧰 Languages & Runtime

TypeScript Python JavaScript Bash Node.js

πŸ› οΈ Stack & Tooling

React n8n Docker Linux GitHub Actions Forgejo Claude VS Code

πŸ” Security & Compliance

ISO 27001 ISO 9001 NIS2 TISAX AL3 Certified DPO

Emre's GitHub Activity

πŸ›‘οΈ Security & Compliance

Project Description
supply-chain-guard Open-source supply chain security scanner for npm, PyPI, Cargo, Go, RubyGems, Composer, NuGet, Docker, VS Code extensions, GitHub Actions, IaC and Solana C2. Detects GlassWorm, Shai-Hulud and 350+ threat indicators. CycloneDX SBOMs, SLSA provenance grading, attack-chain correlation. GitHub Action
secure-dev-ai Security guard CLI: blocks agent runs on critical findings, enforces secure AI-assisted development

βš™οΈ Compliance & Automation (Elvatis Consulting)

NIS2 assessments, ISO 27001 gap analyses, and workflow automation for SMEs, built with n8n, React, and Node.js.

Area Focus
NIS2 / ISO 27001 Gap analysis, risk assessment, implementation roadmaps for SMEs
Workflow Automation n8n-based compliance and reporting pipelines
Web Applications Customer-facing compliance portals, Ghost CMS, React frontends
TISAX AL3 Automotive supplier security certification experience

πŸ€– AI Agent Tooling (AAHP)

Project Description
AAHP Agent-Assisted Handoff Protocol: standardized context handoff between sequential AI agents
aahp-swarm Role-based review and verification swarm extending AAHP: independent Scout, Tester, Risk, and Verdict agents review work before it ships. Model-agnostic, review-first. Why review comes first β†’
improvements Portable multi-model AI workflow framework: model routing, structured agent handoff, and a 5-phase agent pipeline you drop into any repo
aahp-runner Autonomous CLI: spawns Claude agents to work through project tasks
aahp-orchestrator VS Code extension: orchestrate GitHub Copilot and Claude Code with AAHP context
aahp-cron Pipeline orchestrator: schedules and runs aahp-runner across projects
aahp-hub Web dashboard for the AAHP runner: live agent status, token usage, and task overview

πŸ“š Curated Security Lists

List Focus
awesome-software-supply-chain-security A compilation of resources in the software supply chain security domain, with emphasis on open source
awesome-nodejs-security Curated Node.js security resources: tooling, advisories, and hardening practices

πŸ”¬ Research

Project Description
BMAS AI-assisted metric evaluation and experiment tracking

πŸ”§ Open Source @ Elvatis

Tool What it does
conduit-vscode Multi-backend AI coding assistant for VS Code
conduit-bridge OpenAI-compatible AI proxy: Grok, Claude, Gemini, ChatGPT via headless browser
elvatis-mcp MCP server: expose smart home, memory, and automation tools to Claude Desktop, Cursor, Windsurf, and any MCP client

See all Elvatis repos β†’

πŸ“ Blog

Security and compliance from a practitioner's perspective: blog.elvatis.com

πŸ“« Contact

emre.kohler@elvatis.com | elvatis.com

Popular repositories Loading

  1. supply-chain-guard supply-chain-guard Public

    Open-source supply-chain security scanner for npm, PyPI, Cargo, Go, RubyGems, Composer, NuGet, Docker, VS Code extensions, GitHub Actions, IaC and Solana C2. Detects GlassWorm, Shai-Hulud and 350+ …

    TypeScript 5 3

  2. AAHP AAHP Public

    AAHP: A Proposal for Standardized Context Handoff Between Sequential AI Agents

    Shell

  3. BMAS BMAS Public

    BMAS: Research project for AI-assisted metric evaluation and experiment tracking

    Python

  4. aahp-orchestrator aahp-orchestrator Public

    VS Code extension: orchestrate GitHub Copilot and Claude Code with AAHP v3 context

    TypeScript

  5. aahp-runner aahp-runner Public

    Autonomous AAHP agent runner: spawns Claude agents to work through project tasks

    TypeScript

  6. secure-dev-ai secure-dev-ai Public

    Security guard CLI: blocks agent runs on critical findings, enforces secure AI-assisted development

    TypeScript