VirtuArchitect / Personal platform engineering lab

Enterprise infrastructure architecture and automation for complex environments.

I am currently working on practical automation patterns for Nutanix, virtualisation, migration readiness, disconnected infrastructure, and platform operations.

Designed for complex, controlled, and disconnected environments.

Proof before change Lab-safe workflows Offline-ready planning Reviewable runs AI governance patterns
6 active engineering projects
v1.8.1 ZTF-Orchestrator release baseline
CI public portfolio with demo-backed and test-backed evidence

Latest update

Portfolio evidence refreshed across the current repository baselines.

Updated Sep 11, 2026: ZTF-Orchestrator keeps the v1.8.1 release baseline while adding enterprise sign-in polish, a js-yaml security dependency update, and Native Foundation deployment-gate documentation and tests. NKP ZeroTouch Framework now reflects the Sep 9 console icon, editable setup, operational dashboard, and deployment UAT evidence updates. Nutanix Developer Cloud Studio remains aligned to the v10.5.0 guided lab VM workflow with a Sep 9 operational-console layout polish, and Migration Readiness remains on 0.4.0-alpha.1 with the Sep 8 operator-console usability evidence.

Review project evidence

Start here

If you only read one thing, start with the ZTF-Orchestrator case study.

The case study explains the core operating idea behind the site: plan, check readiness, approve, execute within boundaries, and leave reviewable evidence.

Read the flagship case study Browse documentation View speaking page

About

Architecture experience translated into working platform tools.

I am John Goulden, an enterprise architect and infrastructure engineer with a long-standing interest in cloud, virtualisation, infrastructure platforms, and AI systems. This independent portfolio documents personal engineering projects, experiments, and demonstrations built outside my professional responsibilities.

My focus is on environments where change needs to be planned, bounded, reviewed, and handed over cleanly: Nutanix platforms, VMware-to-Nutanix readiness, NKP deployment paths, disconnected or proxied infrastructure, and internal platform operating models.

The projects here turn that background into working consoles, frameworks, readiness tools, and demos. The common thread is operational clarity: reduce manual ambiguity, make risks visible before action, and leave behind evidence someone else can inspect.

Flagship console

ZTF-Orchestrator is the flagship case study.

The portfolio leads with a working control surface rather than a list of repositories. ZTF-Orchestrator shows the operating style: readiness checks, run history, inventory, queue status, and review points in one view.

90-second product walkthrough showing the ZTF-Orchestrator control surface, readiness checks, workflow launch, approvals, run history, and evidence views. If the video is still loading, use the static dashboard image below as the same visual reference. Demo data is simulated.
ZTF-Orchestrator v1.8.1 static UI demo dashboard showing runtime readiness, execution metrics, inventory, queue, governance panels, and ZTF 2.x navigation.
Static ZTF-Orchestrator v1.8.1 demo dashboard, aligned with the refreshed repository README evidence. Demo data is simulated and does not connect to Nutanix targets. Open larger image.
Readiness checks Health signals before operational workflows run.
Run history Visible outcomes, failures, and review points.
Approvals Clear checkpoints before risky actions.
Inventory Installed components, generated configuration, and gaps.

Project portfolio

One coherent body of work across platform operations and AI governance.

Project Maturity Primary evidence Boundary
ZTF-Orchestrator v1.8.1 working implementation Static demo, product video, release, PDF, case study Lab-facing console; Native Foundation mutating adapters remain gated
NDC Studio v10.5.0 prototype Guided lab VM workflow, demo, release notes Mock/safe inspection surface for developer-platform patterns
NKP ZeroTouch Framework v0.1.0 framework Demo, repository, deployment-mode documentation Planning framework for connected, proxied, and air-gapped paths
Migration Readiness 0.4.0-alpha.1 Narrated overview, live-readiness proof, console screenshot Readiness and handoff evidence, not executed migration proof
StrataOne Control-framework experiment Live demo, public repo, SBOM and scan posture Vendor-neutral orchestration exploration with explicit live-operation limits
Enterprise AI Architecture Pattern Reference implementation Console screenshot, case study, tests, papers, status boundary Personal architecture experiment, not a certified standard
Develop Prototype
Nutanix Developer Cloud Studio v10.5.0 live demo showing lab profile, Prism readiness, scope approval, and guided AHV lifecycle controls. Live demo snapshot

Nutanix Developer Cloud Studio

MIT license Last updated Sep 9, 2026 Changelog

A self-service portal pattern for requesting Nutanix-backed lab environments, now including guided lab VM workflows, lab profile selection, setup validation, scope approval, and evidence export.

v10.5.0 Prototype Mock mode Prism-safe Guided lab VM workflow

Demonstrates catalog, request, approval, and environment views, including Prism Element and Prism Central lab profiles, read-only setup validation, approved scope, guided create/clone lifecycle checks, reconciliation, and evidence export.

  • For exploring internal developer platform patterns.
  • Static demo and mock mode keep the experience safe to inspect.
  • v10.5.0 documents the guided lab VM workflow while keeping real lifecycle execution lab-only, disabled by default, and Platform Admin-gated; the Sep 9 update polishes the operational console layout.
Deploy Framework
NKP ZeroTouch Framework live demo showing operations console, deployment modes, readiness cards, and environment status. Live demo snapshot

NKP ZeroTouch Framework

MIT license Last updated Sep 9, 2026 Changelog

A deployment-planning framework for connected, proxied, and air-gapped NKP paths, refreshed with console icons, editable setup, operational dashboard, and deployment UAT evidence updates.

v0.1.0 Framework Air-gapped Validation UAT evidence

Focuses on deployment modes, prerequisites, validation, editable setup planning, RS256/JWKS OIDC evidence, deployment UAT evidence, and offline-package thinking before a cluster is touched.

  • For comparing connected, proxied, and disconnected operating paths.
  • Shows runner, operational dashboard, editable setup, validation, UAT evidence, and bundle-preparation concepts.
Generalize Control framework
StrataOne infrastructure orchestrator dashboard showing control plane status, deployment actions, fleet readiness, operational runbook, and result inspector. Live demo snapshot

StrataOne

MIT license Last updated Aug 22, 2026 Changelog

A vendor-neutral orchestration experiment for distributed infrastructure operations, with production-control-plane hardening, queued-credential safeguards, SBOM attestation, Trivy container scanning, and explicit live-operation boundaries.

Framework FastAPI RBAC Live demo Redfish gated SBOM attestation Trivy scan

Tests how inventory, runbooks, approvals, lifecycle controls, approval-gated live Redfish, credential-reference guarded queued jobs, SBOM-backed supply-chain evidence, Trivy high/critical fixable-CVE gates, and OEM validation boundaries could work when the model is not tied to one platform.

  • For exploring a broader infrastructure orchestration pattern.
  • Live demo shows the console shape; repository carries the implementation boundary.
Migrate Alpha / readiness
Migration Readiness Control Plane 0.4.0-alpha.1 operations console showing Nutanix Provider Edition, source and target providers, live-readiness gates, and local-first evidence workflow. Live demo snapshot

Nutanix Migration & Readiness Control Plane

MIT license Last updated Sep 8, 2026 Commit history

A readiness and handoff model for VMware-to-Nutanix migration planning, now with a narrated overview, operator workbench navigation, Nutanix DEV proof, live-readiness checks, environment access gates, and local-first evidence workflow boundaries.

0.4.0-alpha.1 Alpha Readiness Handoff Nutanix DEV proof

Separates assessment, planning, workflow state, live endpoint proof, operator-friendly PASS/FAILED/preflight results, and handoff artifacts from the act of executing a migration.

  • For making migration gaps visible before a change window.
  • 90-second narrated overview showing the Migration Readiness operator console, environment connection model, readiness workflow, ESXi/vCenter/Nutanix context, and evidence-led migration planning. Demo data is simulated.
  • Alpha status is explicit; live-readiness, Nutanix DEV proof, and the narrated walkthrough are not presented as executed migration proof.
Govern Research / AI governance

Enterprise AI Architecture Pattern

Public repo Last updated Aug 23, 2026 Status

EAAP Control Plane is an active, production-oriented reference implementation for governing AI-assisted enterprise decisions through deterministic controls, approval boundaries, execution tokens, local approval paths, and audit evidence.

AI governance GR-001 to GR-011 36 tests OpenAPI Security scan Token persistence
Problem

AI-assisted decisions need deterministic controls before recommendations can become operational action.

Implemented

Governance evaluator, approval workflow scaffolding, scoped execution-token validation, token persistence, release gates, local users demo console link, audit utilities, Docker smoke evidence, HLD, ADRs, and threat model.

Evidence

Public source, verified check-suite expectations, OpenAPI validation, security scan, Docker Compose smoke evidence, migration and Kubernetes manifest validation, and explicit STATUS.md maturity boundary.

Boundary

Reference implementation and personal architecture experiment, not a certified standard or production-ready enterprise platform.

Differentiator

Clear proof, careful boundaries, and tools people can actually inspect.

Review before action

Roles, approvals, governance checks, run history, and visible readiness states before important changes.

Proof of behaviour

Smoke tests, release checks, sanitized UAT records, compatibility review, CI checks, and exported evidence.

Real delivery paths

Container, appliance, GitHub Pages, hosted demo, reference architecture, and offline package paths where the project calls for them.

Engineering journal

Short notes on why the projects exist and what they are teaching.

Architecture notes, lab lessons, and project rationale for the operating models behind the portfolio.

Published research

Research papers behind the AI governance work.

Published preprints that document the governance ideas behind the Enterprise AI Architecture Pattern and related constraint-focused research.

Primary paper Enterprise AI governance

Enterprise AI Architecture Pattern

Sets out the governance model behind the EAAP Control Plane reference implementation: model-as-component, deterministic control layers, evidence classification, approval boundaries, execution gateways, and auditability.

Deterministic controls Evidence classification Execution boundary Auditability
Related research Constraint-focused governance

EAAP-LGF: AI Governance for Lethal Decision Support

Applies the same control-plane thinking to lethal decision-support governance, arguing for stronger prohibition layers, evidence classification, calibrated confidence gates, independent legal review, multi-authoriser approval, and immutable accountability.

Constraint-focused governance research; not a weapons development, procurement, or autonomous lethal systems document.

John Goulden ยท ORCID 0009-0000-5626-6535

Contact

A personal engineering portfolio for infrastructure automation, readiness, and platform ideas.

These are independent engineering projects developed outside my professional responsibilities. I welcome technical feedback, architecture discussions, and ideas from people working in similar environments. Email me at john@johngoulden.de, message me on LinkedIn, or open a GitHub issue when the discussion belongs with a specific repository.