Hello HN team,I am a long-time system engineer, and I have recently released an open-source project on GitHub: "Security Baseline: Engineering Hardening and Operational Hygiene for Ubuntu Desktop 24.04/26.04 LTS". It is completely free and licensed under GNU GPLv3.The guide is built entirely from my practical field experience and covers a wide array of host-level defenses: low-level kernel sysctl tuning, aggressive Canonical telemetry/Snap purging, zero-leak NetworkManager configs, strict UFW/Portmaster egress controls, and modular application sandboxing via Firejail and AppArmor.I am reaching out because I want to bypass the typical "noise" of superficial internet comments. I am sincerely looking for a rigorous, high-quality technical review from real, battle-tested engineers who actually understand threat modeling, operating system architecture, and Linux internals. I want to know where my current configurations can be improved, what blind spots I might have missed, and how to refine the baseline.I have just submitted a regular link to the project here:https://news.ycombinator.com/item?id=49603751 If you find this project genuinely interesting for the HN community's intellectual curiosity, I would deeply appreciate any visibility or architectural feedback from the community.Thank you for your time and for maintaining such a high-standard platform.Best regards,EugeXo