Skip to content
View jbspeakr's full-sized avatar

Organizations

@zalando @zalando-incubator

Block or report jbspeakr

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
jbspeakr/README.md

Hi there, I'm Jan Brennenstuhl

Principal Engineer | Application Security | Agentic Engineering

I am a product-minded software engineer and security enthusiast based in Berlin, Germany. My work focuses on the intersection of application security, agentic engineering, usability, and automation. I'm passionate about clean code, interdisciplinary software development, and engineering leadership.

Featured

Agentic Identity Broker Wordmark

Language Website View on GitHub

An identity broker designed for AI agents, featuring OAuth2 delegation and consent management.

Why it matters: As AI agents become more autonomous, securely managing their identities and permissions is critical. This project bridges the gap by providing robust OAuth2 delegation and consent management tailored specifically for agentic workflows.

Security Advisories & Vulnerability Disclosures

As an Application Security professional, I actively research and responsibly disclose vulnerabilities to help secure the open-source ecosystem.

Advisory ID / CVE Target Vulnerability / Details Reference
GHSA-ff5v-67qw-84f5 zalando-incubator/agentic-identity-broker Authorization codes never expire Read Advisory
GHSA-55pc-c3c2-739c zalando/skipper OAuth grant cookie cross-host suffix collisions Read Advisory

About Me & What I Do

  • AppSec & Identities: Exploring modern application security architectures and the evolving landscape of identity management.
  • Agentic Engineering: Building frameworks and tools that enable secure and usable autonomous AI agent operations.
  • Writing: I share my thoughts on security, engineering, and tech on my blog: Brennenstuhl on Security.
  • Offline: When I'm not in front of a screen, you'll find me exploring Nordic nature, on a rainy hike, cycling, or enjoying a good cup of coffee. (I also document my hikes at Rucksackrebellen).

Let's Connect

Website LinkedIn Mastodon

Popular repositories Loading

  1. LaTex-UP LaTex-UP Public

    LaTex template University of Potsdam for bachelor- and master-theses and seminary papers.

    TeX 10 3

  2. datensparsam datensparsam Public

    Übermittlungssperre - Opt-out private and personal data at governmental record sections in Germany.

    Python 9 1

  3. uebermittlungssperre uebermittlungssperre Public

    German Übermittlungssperre forms

    4

  4. github-licker github-licker Public

    A Github License Checker for Organisational Repositories

    Python 3 1

  5. codeburn codeburn Public

    Forked from getagentseal/codeburn

    Free, local tool to track AI coding token usage and cost across 31 tools and agents (Claude Code, Cursor, Codex, Gemini and more), by model, project, and task. npx codeburn

    TypeScript

  6. pi pi Public

    Forked from earendil-works/pi

    AI agent toolkit: unified LLM API, agent loop, TUI, coding agent CLI

    TypeScript