I am a Privacy-First Infrastructure Engineer who builds secure, self-hosted digital ecosystems from the ground up. My philosophy is simple: your data, your hardware, your rules. I design and operate private infrastructure that runs entirely on edge hardware with zero third-party dependencies β all accessible exclusively via the Tor network for true digital sovereignty.
- ποΈ Infrastructure Architect: Building resilient, self-hosted systems on Raspberry Pi clusters and edge devices with 20+ Docker services.
- π Privacy-First Engineer: Implementing Zero-Trust Architecture, Tor-native services (.onion only), and robust encryption.
- π Educator & Speaker: Delivering training on self-hosting, cybersecurity, IoT, and digital privacy at universities, communities, and organizations.
- π§ Linux & Container Specialist: Expert in Debian administration, Docker orchestration, and edge computing.
#!/bin/bash
NAME="Risnanda Pascal"
ROLE="Privacy-First Infrastructure Engineer"
PHILOSOPHY="Zero-Trust Β· Self-Hosted Β· Tor-Native Β· Sovereign"
LANGUAGES=("id_ID" "en_US")
TECH_STACK=(
"Docker Β· Container Orchestration (20+ services)"
"Debian Β· Linux Administration"
"Tor Network Β· Obfs4 Bridge"
"Raspberry Pi Β· IoT Β· ESP32 Β· PlatformIO"
"Zero-Trust Architecture"
"Cloudflare Tunnel Β· DNS Sinkhole (Pi-hole)"
"MQTT Β· Edge Computing"
)
INTERESTS=(
"Self-hosted infrastructure"
"Network privacy & anonymization"
"Digital sovereignty"
"Edge computing & AIoT"
"Privacy education & advocacy"
)
echo "=== Profile ==="
echo "Name: $NAME"
echo "Role: $ROLE"
echo "Philosophy: $PHILOSOPHY"
echo "Languages: ${LANGUAGES[*]}"
echo "Stack: ${TECH_STACK[*]}"
echo "Interests: ${INTERESTS[*]}"
echo "---"
echo "Building sovereign infrastructure from edge to encrypted."| Project | Description | Tech Stack |
|---|---|---|
| Digital Independence | Collection of 20+ ready-to-use Docker Compose configurations for self-hosted services with sovereign.sh orchestration script. |
Docker, Bash, 20+ Services |
| NipeX | Privacy & Security Toolkit β fork of Nipe with metadata cleaner, MAC changer, firewall manager, and more. | Tor, Perl, Bash |
| AIoT Sok!Anak | AIoT child nutrition monitoring system β children's health data stays on local servers, not sent overseas. | ESP32, MQTT, AI/ML |
---
config:
layout: elk
---
flowchart TB
subgraph Edge["Edge Hardware"]
Docker["Docker Engine"]
end
subgraph Services["Core Services"]
direction LR
Matrix["Matrix/Synapse\nEncrypted Chat"]
Nextcloud["Nextcloud\nCloud Storage"]
Vaultwarden["Vaultwarden\nPassword Manager"]
SearXNG["SearXNG\nPrivate Search"]
OpenWebUI["Ollama\nSelf-Hosted AI"]
Immich["Immich\nPhoto Gallery"]
LibreTranslate["LibreTranslate\nTranslation"]
YOURLS["YOURLS\nURL Shortener"]
TorBridge["Tor Bridge\nObfs4"]
end
subgraph Security["Security Layer"]
Pihole["Pi-Hole\nDNS Sinkhole"]
DNSCrypt["DNSCrypt-Proxy\nEncrypted DNS"]
Caddy["Caddy\nReverse Proxy"]
end
subgraph Monitoring["Monitoring & Management"]
Uptime["Service Status"]
Ntfy["Notifications"]
Dashdot["Dashboard"]
Homarr["Service Manager"]
end
Docker --> Services
Docker --> Security
Docker --> Monitoring
Security --> Services
Monitoring --> Services
| Topic | Description |
|---|---|
| Tor Bridge Relay with Obfs4 | Practical guide to deploying a Tor bridge relay for enhanced anonymity |
| Tor Hidden Service Implementation | Comprehensive guide to exposing services via .onion addresses |
| Private 5G Core with Open5GS | Step-by-step tutorial using Open5GS and UERANSIM |
| Pi-Hole + Docker Network Ad Blocking | Network-wide ad and tracker blocking |
| Indonesia's PDP Law Guide | Comprehensive overview of UU PDP compliance |
- π Website: me.ricalnet.my.id
- π Docs & Blog: docs.ricalnet.my.id
- πΌ LinkedIn: linkedin.com/in/risnandacandraabdurrozaq
- π§ Email: ricalnet@duck.com
- π Infrastructure Status: Uptime Kuma