Software Engineering Intern — Curefit
Bengaluru, India · May 2026 — Aug 2026
Owned an AI call-orchestration service handling 30k+ voice-agent minutes/month; led its migration from
ElevenLabs to LiveKit across Java and Node.js microservices, cutting annual infrastructure cost by ~37%
while improving latency and eliminating vendor lock-in. Modeled infra spend across 6 deployment
architectures to drive the platform decision, and built an automated API discovery pipeline parsing
Spring Boot controllers for production security tooling.
NotesBhej — course archive
Founder & maintainer · Jan 2024 — present
1000+ MAU at IIITM; Next.js 15, Supabase, Firebase, MinIO, Vercel; search and responsive UI; product and scaling.
Tailgate — zero-trust proxy controller
Personal project · May 2025 — present
Go + Kubernetes controller provisioning Tailscale proxies on deploy; fast cold start; Cloudflare DNS automation;
tests with Kubebuilder and ephemeral clusters.
splitMCP — remote MCP server for Splitwise
Personal project · 2026
Publicly hosted MCP server exposing Splitwise as conversational tools for AI agents; OAuth-authenticated
remote MCP tooling over HTTP/SSE, resolving interoperability issues across multiple MCP clients and DCR
implementations.
B.Tech thesis — vision-based tennis shot recognition
IIITM Gwalior · Jan 2025 — May 2025
Classified tennis shots from pose data with 94% accuracy, comparing a few sequence models on a small
custom dataset.
Self-hosted homelab
2022 — present · Gwalior, India
A small self-hosted private cloud I run at home on Proxmox and bare metal, not just a Raspberry Pi
running Jellyfin. It runs 20+ Docker/Kubernetes services, including Immich, Jellyfin, Nextcloud, and
Vault, that friends and family actually use, serving and storing 10+ TB of data.
-
ZFS snapshots and encrypted automated backups.
-
Tailscale and WireGuard for secure remote access, without exposing ports publicly.
-
Own the whole stack myself: SMB/NFS shares, reverse proxies (Nginx, Caddy), DNS, networking, and automation.
-
Built Tailgate on top of this setup to bring zero-trust ingress to the cluster (see above).
-
Currently building a self-hosted SSO gateway to centralize auth, so I can safely expose more of
these tools publicly with simple, unified login.