top of page


Why Navy Logistics Software Struggles at the Deckplate Level
Most Navy logistics software doesn't fall short because the idea is wrong. It struggles because the deckplate reality is different than the workflow assumptions. At the deckplate level, time is compressed, priorities shift hourly, and the "right way" to do admin work competes with keeping the mission moving. When a tool adds friction at the point of execution, Sailors don't argue with it—they route around it. Leadership then gets dashboards that look "green," while the deckpl
kate frese
May 152 min read


Role-Based Access Control in Small-Team SaaS: NIST 800-53 AC-2 and AC-3 Implementation Guide
Executive summary For small teams building SaaS for government-adjacent customers, access control is the fastest way to lose trust in procurement1) because its directly tied to data exposure risk, and 2) because its easy to ask about and hard to hand-wave. This white paper is a practical implementation guide for Role-Based Access Control (RBAC) aligned to NIST SP 800-53 control families AC-2 (Account Management) and AC-3 (Access Enforcement). It focuses on what federal buy
kate frese
May 135 min read


Secure Authentication & Session Management in Modern Apps: Practical Patterns That Prevent Real Breaches
Authentication and session management are where normal app bugs become account takeovers. This white paper provides practical patterns for strong identity proofing, secure token handling, session rotation, and safe logout behavior with implementation checklists for engineering teams.
kate frese
May 62 min read


Secure by Design: Threat Modeling for Small Product Teams
Most app security failures happen because security is treated as a late-stage checklist item. Threat modeling is the simplest way for small product teams to build security in from day one. Here is a lightweight, repeatable 6-step process designed for teams shipping real products under real constraints. Most app security failures don't happen because teams don't care about security. They happen because security is treated as a late-stage checklist item—something to patch after
kate frese
May 13 min read
App Development: Building Momentum Through Iteration Cycles
The Solo Developer Advantage (And Challenge) Building an app alone has a unique advantage: speed and autonomy . No meetings, no consensus-building, no waiting for approvals. But it also has a unique challenge: maintaining momentum without a team to push you forward. The difference between solo developers who ship and those who stall isn't talent—it's iteration velocity . It's the ability to move through cycles of building, testing, learning, and improving without losing focus
kate frese
Mar 313 min read
bottom of page