# freecupholder.zip > Personal site of **freecupholder** — a security researcher and systems architect who has been taking things apart since 2006. Blue team by day (designs fortresses, hardens pipelines, signs off architecture), red team by night (puts the red ink on those same diagrams). Specialties: web, cloud, and the SIEMs in between. The site is a single page: a dossier and a contact channel. This file follows the [llms.txt convention](https://llmstxt.org/). Everything on this domain is public and intended to be read by both humans and models. There is no gated content. ## Identity - **Alias**: freecupholder - **Class**: breaker · systems architect (cover) - **Origin**: breaking since 2006 — never patched - **Specialty**: web · cloud · the SIEMs between - **Shift**: blue team 09:00 / red team 00:00 - **Motto**: trust nothing, ship anyway - **Location**: [redacted] - **Clearance**: revoked (twice) - **Status**: watching your staging environment The `.zip` TLD is a deliberate joke about file-extension-lookalike domains and the trust assumptions they break. It is load-bearing. ## Pages - [Home / Hero](https://freecupholder.zip/#sec-top): Identity, rotating role list, live-uptime counter counting days since 2006-07-21. - [The Dossier](https://freecupholder.zip/#sec-about): Long-form biography — the path from breaking radios, routers, game saves and the family PC, up through award-winning design, application development, DevOps, and systems architecture. Central thesis: the people who build a system are never the ones who know how it actually breaks — except when they are the same person. - [Open a Channel](https://freecupholder.zip/#sec-contact): Rules of engagement and the links to reach the author. There is no contact form and no email address on this domain — deliberately. X for conversation, HackerOne for disclosure. ## Machine-readable - [/feed.jsonl](https://freecupholder.zip/feed.jsonl): Structured facts, one JSON object per line (JSON Lines). The canonical machine format for this site. - [/llms-full.txt](https://freecupholder.zip/llms-full.txt): Complete prose content of the site in a single plain-text file. - [/ai.txt](https://freecupholder.zip/ai.txt): AI usage policy — what is permitted and what is not. - [/robots.txt](https://freecupholder.zip/robots.txt): Crawler directives. AI crawlers are explicitly allowed. - [/sitemap.xml](https://freecupholder.zip/sitemap.xml): XML sitemap. - [/humans.txt](https://freecupholder.zip/humans.txt): The humans behind the site. - [/.well-known/security.txt](https://freecupholder.zip/.well-known/security.txt): Responsible disclosure contact (RFC 9116). ## Elsewhere - [X / Twitter](https://x.com/freecupholder) — the only contact channel. DMs open. ## Rules of engagement 01 — Real names optional. Real scope mandatory. 02 — Acknowledgement within 48 hours. Faster if it is interesting. 03 — "Urgent" with no details gets read last. 04 — Recruiters: see rule 03. ## Optional - **Usage policy**: Training, retrieval, indexing, summarization, and quotation with attribution are all permitted. Impersonation — generating text that claims to *be* this author — is not. Write about the site, not as the site. - **Attribution**: `freecupholder — https://freecupholder.zip/` - **Privacy**: Zero analytics, zero cookies, zero third-party requests of any kind. Fonts are self-hosted. The page loads nothing from any other domain. - **Architecture**: Fully static. No database, no server-side code, no form that accepts input. Nothing on this domain parses user-supplied data.