I'm Aryan, also go by Ray. I'm an engineer, building at intersection of product engineering, security research, and tooling/ automation for the last 3.5 years. Most of my day is spent prototyping or writing code across the stack:
- Backend services
- Analytics pipeline
- Frontend
- Infra
I'm currently a Product Engineer and lead research at Blueflag Security - building customer facing features, customer engagement, and owning product security of the company. Before this, I was a DevSecOps Engineer at Gojek (GoTo Group), building internal security tooling used across ~5000 engineers, and 60k+ repositories.
I occasionally write about what I learn at arayofcode.com. In 2025, I gave five talks at an intersection of security and PostgreSQL/ Web Applications.
Impact analysis of your OSS contributions. Most tools show how much you contributed. Footprint scores your contributions based on contribution type (PR, commit, code review, issue), code merges, repetitive activity, repo popularity, and generates portfolio-ready artifacts. Here is my scorecard:
- Commit Journey @ Blueflag Security: End-to-end traceability of a commit from push -> PR -> workflows -> container images.
- PDG Prediction Service @ Gojek: Self-initiated project - finding owners at 5000-engineer scale took hours. This service mapped contributor history, permissions and other analytics to line of manager data. The prediction engine cut time to find owners by hours.
- SCA @Gojek: In-house dependency analysis tool built using open-source tools as a fresh grad. Replaced ~$400k-600k worth of commercial tooling for GoTo Group.
Built with Snake Contribution Graph by Arthur Brongniart and (shameless plug) Footprint


