<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"><channel><description>CTO &amp; Co-Founder @InferaDB.com — the Authorization Database. Previously Okta, Auth0, OpenFGA and Ushahidi.</description><link>https://bsky.app/profile/evansims.com</link><title>@evansims.com - Evan Sims</title><item><link>https://bsky.app/profile/evansims.com/post/3mkzctfiocb24</link><description>Wonder Man was even better than I expected. Sir Ben Kingsly and Yahya Abdul-Mateen II never disappoint.</description><pubDate>04 May 2026 09:03 +0000</pubDate><guid isPermaLink="false">at://did:plc:dvwv5cgcs54bxwsc2bx6mglm/app.bsky.feed.post/3mkzctfiocb24</guid></item><item><link>https://bsky.app/profile/evansims.com/post/3mkyp4cidqf23</link><description>No one warned me Mr. Door was in The Night Manager</description><pubDate>04 May 2026 03:10 +0000</pubDate><guid isPermaLink="false">at://did:plc:dvwv5cgcs54bxwsc2bx6mglm/app.bsky.feed.post/3mkyp4cidqf23</guid></item><item><link>https://bsky.app/profile/evansims.com/post/3mjsg3r4rfh2e</link><description>Harness engineering</description><pubDate>18 Apr 2026 21:47 +0000</pubDate><guid isPermaLink="false">at://did:plc:dvwv5cgcs54bxwsc2bx6mglm/app.bsky.feed.post/3mjsg3r4rfh2e</guid></item><item><link>https://bsky.app/profile/evansims.com/post/3mjpjrkt66m2s</link><description>Everyone seems to remember that Icarus flew too close to the sun, but not that his father also told him not to fly too low and let the sea dampen his wings. We only ever tell half the story: the falling half. Hubris makes a better cautionary tale than mediocrity does.</description><pubDate>17 Apr 2026 18:15 +0000</pubDate><guid isPermaLink="false">at://did:plc:dvwv5cgcs54bxwsc2bx6mglm/app.bsky.feed.post/3mjpjrkt66m2s</guid></item><item><link>https://bsky.app/profile/evansims.com/post/3mjiblihwgm2o</link><description>I always appreciate when Claude resorts to question and exclamation marks in its statements — it&#39;s reassuring knowing I&#39;m not the only one deeply confused as to what&#39;s going on.</description><pubDate>14 Apr 2026 21:00 +0000</pubDate><guid isPermaLink="false">at://did:plc:dvwv5cgcs54bxwsc2bx6mglm/app.bsky.feed.post/3mjiblihwgm2o</guid></item><item><link>https://bsky.app/profile/evansims.com/post/3miyyc4neeb2r</link><description>Authentication and authorization alone don&#39;t achieve tenant isolation.&#xA;&#xA;A user can be fully authenticated, fully authorized for their own tenant — and still access another tenant&#39;s resources if isolation isn&#39;t enforced at the infrastructure level.&#xA;&#xA;This isn&#39;t theoretical.</description><pubDate>08 Apr 2026 19:04 +0000</pubDate><guid isPermaLink="false">at://did:plc:dvwv5cgcs54bxwsc2bx6mglm/app.bsky.feed.post/3miyyc4neeb2r</guid></item><item><link>https://bsky.app/profile/evansims.com/post/3mitjtobrdc2r</link><description>Model Context Protocol (MCP) is becoming the standard for connecting AI agents to enterprise systems. But its authorization model has a fundamental problem.</description><pubDate>06 Apr 2026 15:02 +0000</pubDate><guid isPermaLink="false">at://did:plc:dvwv5cgcs54bxwsc2bx6mglm/app.bsky.feed.post/3mitjtobrdc2r</guid></item><item><link>https://bsky.app/profile/evansims.com/post/3miin2cefqd2q</link><description>Only 22% of teams treat AI agents as independent identities. The rest? Shared API keys.&#xA;&#xA;That stat comes from the 2026 State of AI Agent Security Report — and it should terrify every CISO reading this.</description><pubDate>02 Apr 2026 07:00 +0000</pubDate><guid isPermaLink="false">at://did:plc:dvwv5cgcs54bxwsc2bx6mglm/app.bsky.feed.post/3miin2cefqd2q</guid></item><item><link>https://bsky.app/profile/evansims.com/post/3mihiozimfe2q</link><description>I don&#39;t quite know how Marathon&#39;s graphic realism aesthetic fits into enterprise software yet, but I can&#39;t help wanting every UI I touch to have it. It&#39;s just gorgeous.</description><pubDate>01 Apr 2026 20:09 +0000</pubDate><guid isPermaLink="false">at://did:plc:dvwv5cgcs54bxwsc2bx6mglm/app.bsky.feed.post/3mihiozimfe2q</guid></item><item><link>https://bsky.app/profile/evansims.com/post/3mihen5d2ts2r</link><description>Broken access control has been the #1 risk on the OWASP Top 10 for two consecutive releases (2021 and 2025).&#xA;&#xA;100% of applications tested by OWASP researchers had some form of broken access control.</description><pubDate>01 Apr 2026 18:57 +0000</pubDate><guid isPermaLink="false">at://did:plc:dvwv5cgcs54bxwsc2bx6mglm/app.bsky.feed.post/3mihen5d2ts2r</guid></item><item><link>https://bsky.app/profile/evansims.com/post/3mifbw3utam2j</link><description>You should see my schedule; I&#39;m positively bedeviled with meetings, etcetera.</description><pubDate>31 Mar 2026 23:03 +0000</pubDate><guid isPermaLink="false">at://did:plc:dvwv5cgcs54bxwsc2bx6mglm/app.bsky.feed.post/3mifbw3utam2j</guid></item><item><link>https://bsky.app/profile/evansims.com/post/3mif2t4czzb27</link><description>AI agents don&#39;t ask for permission twice.&#xA;&#xA;They make a decision, call your API, access your data. If your access control drifted out of sync last week, you won&#39;t know until it&#39;s already happened.</description><pubDate>31 Mar 2026 20:56 +0000</pubDate><guid isPermaLink="false">at://did:plc:dvwv5cgcs54bxwsc2bx6mglm/app.bsky.feed.post/3mif2t4czzb27</guid></item><item><link>https://bsky.app/profile/evansims.com/post/3miegr74hdr2l</link><description>Just shipped the new InferaDB website — really proud of how the developer docs, blog (Dispatch), and changelog turned out. inferadb.com&#xA;&#xA;First time working with animating SVG. Love the subtle effect it gives Dispatch posts when they load in and on hover.</description><pubDate>31 Mar 2026 14:57 +0000</pubDate><guid isPermaLink="false">at://did:plc:dvwv5cgcs54bxwsc2bx6mglm/app.bsky.feed.post/3miegr74hdr2l</guid></item><item><link>https://bsky.app/profile/evansims.com/post/3mha5gcs75e23</link><description>OK, I really really loved &#34;Good Luck, Have Fun, Don&#39;t Die&#34;. Tremendously fun movie</description><pubDate>17 Mar 2026 04:34 +0000</pubDate><guid isPermaLink="false">at://did:plc:dvwv5cgcs54bxwsc2bx6mglm/app.bsky.feed.post/3mha5gcs75e23</guid></item><item><link>https://bsky.app/profile/evansims.com/post/3mgpncpdujw2u</link><description>Incredible to see my PHP framework (PSR Discovery) just passed 8 million downloads!</description><pubDate>10 Mar 2026 15:03 +0000</pubDate><guid isPermaLink="false">at://did:plc:dvwv5cgcs54bxwsc2bx6mglm/app.bsky.feed.post/3mgpncpdujw2u</guid></item><item><link>https://bsky.app/profile/evansims.com/post/3mgnjzkcnud2u</link><description>I couldn&#39;t sleep last night, so I tinkered around and built a tool I&#39;ve wanted for a while: a no-fuss code coverage reporter for GitHub Actions. Tools like Codecov are convenient, but I think the added overhead of an external service dependency and secrets is overkill.</description><pubDate>09 Mar 2026 18:59 +0000</pubDate><guid isPermaLink="false">at://did:plc:dvwv5cgcs54bxwsc2bx6mglm/app.bsky.feed.post/3mgnjzkcnud2u</guid></item><item><link>https://bsky.app/profile/evansims.com/post/3mgg43okhva27</link><description>Your authorization system can&#39;t prove it worked correctly yesterday.&#xA;&#xA;Try it. Pull your logs and database backups. I&#39;ll wait.</description><pubDate>06 Mar 2026 20:01 +0000</pubDate><guid isPermaLink="false">at://did:plc:dvwv5cgcs54bxwsc2bx6mglm/app.bsky.feed.post/3mgg43okhva27</guid></item><item><link>https://bsky.app/profile/evansims.com/post/3mgd6eyfe5327</link><description>&#34;We deploy in eu-west-1&#34; is not a data residency guarantee.&#xA;&#xA;A deployment configuration is a policy. A consensus protocol that physically can&#39;t replicate data outside a jurisdiction is a guarantee.&#xA;&#xA;One satisfies an auditor&#39;s question. The other satisfies the follow-up.</description><pubDate>05 Mar 2026 16:04 +0000</pubDate><guid isPermaLink="false">at://did:plc:dvwv5cgcs54bxwsc2bx6mglm/app.bsky.feed.post/3mgd6eyfe5327</guid></item><item><link>https://bsky.app/profile/evansims.com/post/3mgb37lzqyi2m</link><description>Your authorization layer is the only part of your infrastructure you can&#39;t verify — and it&#39;s making every access decision.&#xA;&#xA;You&#39;ve got observability everywhere. APIs, databases, services — all instrumented. But auth? It&#39;s a black box. Outputs &#34;allow&#34; or &#34;deny&#34; and you trust it.</description><pubDate>04 Mar 2026 20:02 +0000</pubDate><guid isPermaLink="false">at://did:plc:dvwv5cgcs54bxwsc2bx6mglm/app.bsky.feed.post/3mgb37lzqyi2m</guid></item><item><link>https://bsky.app/profile/evansims.com/post/3mg3zwzwzeg2f</link><description>Marathon is the first extraction shooter I&#39;ve found that doesn&#39;t feel like a second job.&#xA;&#xA;Spent all weekend playing with my partner and friends. The cyberpunk aesthetic is stunning — combat is tight, and even short sessions feel rewarding. Most fun I&#39;ve had with the genre!</description><pubDate>02 Mar 2026 19:56 +0000</pubDate><guid isPermaLink="false">at://did:plc:dvwv5cgcs54bxwsc2bx6mglm/app.bsky.feed.post/3mg3zwzwzeg2f</guid></item><item><link>https://bsky.app/profile/evansims.com/post/3mg3mjvoqjb2v</link><description>Zero trust for identity? Check. For devices and networks? Yep. For workloads? Of course.&#xA;&#xA;For the authorization layer that actually enforces access decisions? Crickets.</description><pubDate>02 Mar 2026 15:56 +0000</pubDate><guid isPermaLink="false">at://did:plc:dvwv5cgcs54bxwsc2bx6mglm/app.bsky.feed.post/3mg3mjvoqjb2v</guid></item><item><link>https://bsky.app/profile/evansims.com/post/3mcc4j7h6ep2a</link><description>I&#39;m building a little game engine in Metal/Vulkan from scratch with Claude Code (just for fun) and I decided I wanted to integrate a big throw back to my early gamer days — Starsiege Tribes skiing. I can&#39;t tell you how overjoyed I was that Claude understood this concept thoroughly.</description><pubDate>13 Jan 2026 08:17 +0000</pubDate><guid isPermaLink="false">at://did:plc:dvwv5cgcs54bxwsc2bx6mglm/app.bsky.feed.post/3mcc4j7h6ep2a</guid></item><item><link>https://bsky.app/profile/evansims.com/post/3mcbblwj27a24</link><description>Ever wonder what&#39;s actually happening inside your authorization system? Traditional setups operate like black boxes: permissions go in, yes/no comes out, and you just hope nothing&#39;s been tampered with. We&#39;re changing that.</description><pubDate>13 Jan 2026 00:15 +0000</pubDate><guid isPermaLink="false">at://did:plc:dvwv5cgcs54bxwsc2bx6mglm/app.bsky.feed.post/3mcbblwj27a24</guid></item><item><link>https://bsky.app/profile/evansims.com/post/3mbndpj6se22j</link><description>At the beginning of each workday, each player draws 7: three ‘Just Checking In’s, two ‘No Rush On This’s, one ‘Per My Last Email,’ and a legendary: ‘Let Me Know How I Can Help.’ You may play any number of kindness spells this turn.</description><pubDate>05 Jan 2026 02:00 +0000</pubDate><guid isPermaLink="false">at://did:plc:dvwv5cgcs54bxwsc2bx6mglm/app.bsky.feed.post/3mbndpj6se22j</guid></item><item><link>https://bsky.app/profile/evansims.com/post/3mayoslddgx2v</link><description>Love building terminal UIs — it scratches an itch that&#39;s hard to define. Coming of age in the 90s hacking scene left an impression on me, I think. This is from @InferaDB CLI&#39;s `dev status --interactive` command. It&#39;s built using our Rust-native TUI framework inspired by Bubble Tea, called Ferment.</description><pubDate>27 Dec 2025 20:52 +0000</pubDate><guid isPermaLink="false">at://did:plc:dvwv5cgcs54bxwsc2bx6mglm/app.bsky.feed.post/3mayoslddgx2v</guid></item><item><link>https://bsky.app/profile/evansims.com/post/3m63fqpzs662z</link><description>In Chicago this week visiting with our dear friends 😊</description><pubDate>20 Nov 2025 18:33 +0000</pubDate><guid isPermaLink="false">at://did:plc:dvwv5cgcs54bxwsc2bx6mglm/app.bsky.feed.post/3m63fqpzs662z</guid></item><item><link>https://bsky.app/profile/evansims.com/post/3m5zaxk6hyv2o</link><description>I have the sudden urge to build a MUD with Rust</description><pubDate>19 Nov 2025 22:02 +0000</pubDate><guid isPermaLink="false">at://did:plc:dvwv5cgcs54bxwsc2bx6mglm/app.bsky.feed.post/3m5zaxk6hyv2o</guid></item><item><link>https://bsky.app/profile/evansims.com/post/3m5ymqkykf22s</link><description>&#34;Startup&#34; (the series) was a delightful surprise. I recently binge-watched all three seasons. It&#39;s a bummer we won&#39;t be getting a Season 4!</description><pubDate>19 Nov 2025 16:00 +0000</pubDate><guid isPermaLink="false">at://did:plc:dvwv5cgcs54bxwsc2bx6mglm/app.bsky.feed.post/3m5ymqkykf22s</guid></item><item><link>https://bsky.app/profile/evansims.com/post/3m5xrw5gyzm2a</link><description>Finding something you&#39;re so passionate about that you can envision dedicating the next decade to it is rare and exciting. The first for me was my fiancé; the second is @InferaDB.</description><pubDate>19 Nov 2025 08:00 +0000</pubDate><guid isPermaLink="false">at://did:plc:dvwv5cgcs54bxwsc2bx6mglm/app.bsky.feed.post/3m5xrw5gyzm2a</guid></item><item><link>https://bsky.app/profile/evansims.com/post/3m5wvomwc7l2l</link><description>Hot take: Rust is the future of software development, and I&#39;m shaping InferaDB to be a predominantly Rust-based company from the ground up.</description><pubDate>18 Nov 2025 23:34 +0000</pubDate><guid isPermaLink="false">at://did:plc:dvwv5cgcs54bxwsc2bx6mglm/app.bsky.feed.post/3m5wvomwc7l2l</guid></item></channel></rss>