Build · Break · Repair · Secure · Run

The working record of
what gets built & run.

A self-hosted technical journal — infrastructure stood up, faults diagnosed, systems pentested and assessed, networks administered. Written honestly: the commands, the wrong turns, and why each fix mattered.

Built & documented with

FastAPINginxCloudflare TunnelsystemdLet's EncryptUbuntuZeroTier
spencerlab@edge
$ curl -s spencerlab.tech/healthz
{"status":"ok","entries":1}
$ systemctl is-active spencerlab-hub
active
$ cloudflared tunnel info
HEALTHY · 0 inbound ports
System status
Service
ONLINE
TLS
VALID
Inbound
0 PORTS
Entries
1
Local time
What this hub records

Five disciplines

End-to-end work across the stack — each entry filed under the verb that describes it.

1Entries published
5Disciplines
0Inbound ports
100%Self-hosted
AutoTLS renewal
From the journal

Latest entries

Browse all →
The lab bench

Tools in play

FastAPIJinja2Nginx Cloudflare TunnelsystemdLet's Encrypt Ubuntu ServerVirtualBoxZeroTier Kali LinuxVentoyPython GitAuditForgeFieldnote

Published straight
from the bench.

Self-hosted FastAPI on a homelab VM, public over HTTPS through a Cloudflare Tunnel — no port-forwarding, no exposed IP. Finalized documents push here one-click from AuditForge and Fieldnote, through a token-gated, secret-scanned publish API.

github.com/spencerawlson Publishes from AuditForge · Fieldnote Token-gated · secret-scanned