Matt G

Built for Others

Custom tools, bots, and web apps — built to spec, delivered to work


What I Build


I take on freelance projects where the problem is concrete and a well-built tool will actually solve it. No bloated scope, no unnecessary frameworks — just working software that does what you need.

🛠

Automation & Bots

Discord bots, scheduled scripts, workflow automation, web scrapers, and data pipeline tools. If you're doing something manually and repeatedly, it can probably be automated.

📊

Dashboards & Data Tools

Streamlit dashboards, internal reporting tools, and data visualisations. Built for small teams that need insight into their numbers without enterprise overhead.

🌐

Web Apps & Sites

React frontends, static portfolio sites, small full-stack apps. Clean, fast, and deployed — no unnecessary complexity.

🤖

AI & LLM Integrations

Chatbots, RAG pipelines, AI-powered tools integrated into your existing workflow. Practical AI — not demos, but things that actually get used.

🔧

CLI Tools & Scripts

Custom command-line utilities in Python or Go. Fast, portable, and built to fit exactly how you work rather than around a GUI.

🔒

Security & QA

Authorised security assessments and functional QA on web apps and APIs — auth, access control, and LLM prompt-injection testing — plus small security utilities like password tools and USB watchdogs.



Selected Work


A sample of projects built for clients and organisations.

The Infant Cultivation Program

ARG

A fully realised alternate reality game built as a satirical "official government portal." The site maintains a deadpan bureaucratic fiction across 10+ interconnected pages — complete with a suppressed research library, intercepted transmissions, a staff document archive, and a fake internal terminal.

Beyond the surface, there are multiple puzzle layers and a hidden narrative thread running through the site. Built to be explored, not explained.

My role: Sole build — design and code. Wrote the narrative, designed the puzzle layers, and built every page.

HTML / CSS / JS Cloudflare Pages ARG Design Puzzle Design
Visit the site →

Neurole

Education

A neuroscience education site built around two daily games: The Daily Case, a clinical diagnosis puzzle where you work from a set of symptoms to a diagnosis, and Map the Brain, a region-identification quiz with an AI Q&A panel that explains what each region actually does.

All game content is authored by the client in Google Sheets and pulled in as published CSV, so new cases and questions go live without a deploy, with a built-in sample set as fallback if a sheet is ever unreachable.

My role: I did not build Neurole. I was brought on after launch to modernise an existing site — refreshing the visual design and front-end look and feel, porting it to React, and fixing the archive so past cases replay correctly.

HTML / CSS / JS Google Sheets CSV Cloudflare Worker LLM API
Visit the site →

Dream Team Tech

Payments

A subscription billing and paywall layer serving two separate products from one account. Customers buy a plan on the billing site; the purchase unlocks gated features inside each product without either product having to know anything about payments.

Card subscriptions run through Stripe, crypto through Coinbase Commerce, with a card→crypto onramp for customers who want it. No card or wallet data touches the application — checkout is hosted, and every webhook is signature-verified before it is trusted. An hourly scheduled worker re-checks each active subscription and automatically reverts lapsed accounts to free, so a missed webhook can't leave a plan unlocked indefinitely.

My role: Sole developer. Scoped the requirements from client Q&A, chose the payment architecture, and built both the frontend and the Workers handling checkout, webhooks, entitlement sync, and reconciliation.

React / Vite Cloudflare Pages Cloudflare Workers Stripe Coinbase Commerce Supabase

Polaris Student

Security & QA

Authorised security and QA testing for Polaris Scholar, LLC, on their student college-readiness platform — a single-page app spanning thirteen modules, several education systems, and eight languages.

The engagement covered authentication and session handling, cross-origin policy, write authorisation, stored-input handling, and prompt-injection resistance on the platform's AI assistant, alongside feature-by-feature functional QA across education systems and languages. Delivered as a written assessment with reproduction steps, severity ratings, and remediation guidance. Findings remain confidential to the client.

My role: Security contractor, working to an authorised testing scope agreed with the client. Ran the assessment and wrote the report; also served as one of the platform's functional QA testers during a multi‑education‑system rollout.

Web App Security API Testing LLM Red-Teaming QA


How It Works


  1. You describe the problem Email me what you need, what it should do, and any constraints (budget, timeline, stack). No brief template required — plain English is fine.
  2. I scope it out I'll reply with what I can build, what it'll take, and a flat price. No hourly billing surprises.
  3. I build it You get updates as it progresses. I don't disappear for two weeks.
  4. Delivered and working You get the source code, deployment instructions, and a brief handoff. If something breaks in the first week, I fix it.


Have a project in mind?

Describe what you need and I'll tell you whether I can build it and what it would take. Response within 24 hours.

Email me about it