Methodology and process documentation for AI-assisted technical writing and review — a practical exploration of how AI can help without sacrificing rigor, accuracy, or editorial judgment.
WordPress risky-action gating with mandatory reauthentication, time-bounded sessions, 2FA support, rate limiting, and policy controls across wp-admin, REST, WP-CLI, Cron, WPGraphQL, and XML-RPC.
Patchstack reported Broken Access Control as 57% of real-world WordPress exploitation attempts in 2026, with privilege escalation and broken authentication pushing that risk concentration even higher. Sudo is built for the moment after prevention fails: when an attacker already has a session and tries to install plugins, create admins, or change settings, it forces reauthentication before the damage can happen.
Agentic tools and processes to help humans write, review, and maintain technical documentation. Don't sacrifice — increase — your rigor, accuracy, and editorial judgment.
WordPress operations runbook template: production procedures for deployment, maintenance, backup, incident response, and recovery.
WordPress security architecture and hardening guide: enterprise practices for threat mitigation, authentication, and supply chain defense.
WordPress security benchmark: prescriptive full-stack hardening controls for current supported WordPress releases on the LEMP/LAMP stack.
WordPress security style guide: terminology, voice, and editorial standards for accurate security communication.
There are a few oldies but goodies among the community and canonical plugins for WordPress that I’m exploring to scratch some old itches.
Authorship has a well-architected approach to multi-author attribution. I’m modernizing it and adding an adapter layer for it in Byline Feeds so every author has and is included in semantically rich metadata.
Comment Popularity is a simple plugin that lets users rate comments. I’ve added a simple, tried, and true method using those ratings predictively to automate which comments get promoted or moderated.
Two-Factor is vital to WordPress core and my Sudo plugin, so I have been studying it and trying to contribute where I can. There are a lot of good docs in my security repos, including the most current and comprehensive overview of how user sessions and authentication work today in WordPress.
Agentic tools are part of my research, development, and writing/editing workflows, thanks to others’ efforts I’ve built on and shared: agent-skills, Claude WordPress skills, and general skills. I’ve used some of these sources within and alongside my own agent and skill files. For example, check out my AI-assisted docs project for writing and maintaining technical documentation.
You’ll also see some learning-oriented projects in my forked repos for workshops with the Edmonton WordPress Meetup, including a Headless WordPress SvelteKit Site. These are open for anyone to fork, use, and improve.

Risk-based pricing tools for global agencies and B-Corps built around the Capital Asset Pricing Model (CAPM) adapted from financial economics. Main App · Small agency and freelancer version

Exploring structured author identity that travels with the work — across feeds, search, the fediverse, and AI — from one source of truth in WordPress.
Block editor plugins that bring specialized content types and structured data to WordPress.

WordPress bibliography block that transforms DOI, BibTeX, and citation input into static, semantically rich, reference-manager friendly bibliographies.
Another block plugin is on the way. I’m keeping this one under wraps for now, but it’s meant to sit alongside Bibliography as another structured-content tool for WordPress.
More Projects!
Other things I've been working on.
PHP framework for creating write-only ActivityPub fediverse bots. Based on Terence Eden’s (@edent) model.
This is a developer reference exploring how major WordPress 2FA plugins store secrets, detect users, and validate codes. It includes Sudo bridge examples for WP 2FA, Wordfence, and AIOS.
A Frank Lloyd Wright-era architect's notebook FSE block theme for WordPress — aged parchment, dot-grid overlays, blueprint borders, and refined architectural typography.
Browse the full public repository lists behind this curated selection.