Reverse Engineering Projects for Freelancers
Discover how Vollna streamlines your project search on Upwork with powerful filters, real-time alerts, and extensive analytics for optimal reverse engineering opportunities.
Signup for free
to get access to all filter attributes and instant notifications when new jobs are posted.
Setup filter
Get access to over 30+ filter attributes, setup instant notifications, integrate with your CRM and marketing tools, and more.
Start free trial
266 projects
published for past 72 hours.
| Job Title | Budget | Published | |||
|---|---|---|---|---|---|
|
CAD Designer Needed to Enlarge Spirograph for CNC Cutting
Applied
|
$15 - $30
/ hr
|
25 minutes ago |
4
|
||
|
We are artists looking for someone to help us create a large, working version of a traditional Spirograph toy for an art project.
We can provide high resolution scans, photographs, and measurements of the original Spirograph pieces. We would like these recreated accurately in CAD and enlarged so the finished Spirograph functions just like the original. The most important details are: • Accurate inner and outer gear teeth so the pieces mesh and roll smoothly • Accurate placement of the drawing holes • A large outer ring approximately 3 to 4 feet in diameter • The outer ring divided into several sections so it can be cut on a standard CNC router and reassembled • CNC ready DXF and SVG files, plus the original CAD file This should be a relatively simple project for someone experienced with CAD and CNC fabrication. We are not looking for complex mechanical engineering or product development. We simply need clean, accurate geometry that can be CNC cut and will function properly when assembled. Experience with gears, CNC routing, Fusion 360, Rhino, AutoCAD, or similar CAD software would be helpful. When applying, please briefly explain how you would ensure that the enlarged inner and outer gear teeth maintain the correct relationship. We anticipate this being approximately 4 to 8 hours of work.
Hourly rate:
15 - 30 USD
25 minutes ago
|
|||||
|
Senior Search / Information Retrieval Engineer — OEM Technical Document Retrieval
Applied
|
not specified | 1 hour ago |
4
|
||
|
Project Overview
I am looking for a senior engineer with strong information-retrieval, search, and technical-document discovery experience to complete a specific retrieval milestone for an industrial maintenance software application. The problem is narrowly defined: Given industrial equipment identity information such as manufacturer, model, serial/configuration information, and equipment type, reliably locate and acquire the correct publicly available OEM technical publication applicable to that equipment. Examples include OEM operating manuals, installation/operation/maintenance manuals, service manuals, maintenance manuals, and equivalent controlling technical publications. This is not a general software-development project and not primarily a prompt-engineering project. Substantial engineering work has already been completed. The project includes an existing retrieval implementation, test assets, telemetry, benchmark results, governance requirements, and extensive root-cause analysis (RCA) and documentation of previous experiments. The successful contractor is expected to use that evidence rather than repeat previously completed investigation without a specific technical reason. The Engineering Problem The existing system can successfully locate difficult OEM publications and has strong controls around source evidence, publication authenticity, equipment applicability, and fail-closed behavior. The remaining challenge is making retrieval consistently reliable and fast across both straightforward and difficult cases without weakening those controls. Recent testing on a fixed four-equipment control set produced successful retrievals in approximately 40–74 seconds per asset. However, those cases followed relatively easy retrieval paths and do not establish that the retrieval problem is solved. Historically, difficult and long-tail cases have required substantially more retrieval effort and time. The objective of this engagement is to complete the FIND milestone and prove that it works against an agreed acceptance test, including difficult retrieval, long-tail/archive behavior, and correct refusal when an applicable public OEM publication cannot be validated. Non-Negotiable Requirements The completed FIND system must: Locate the correct applicable OEM publication when it is publicly obtainable. Preserve evidence showing where the publication came from. Validate OEM identity and equipment/model applicability. Acquire and inspect the actual publication rather than treating search-result snippets as proof. Support legitimate long-tail and archived-publication retrieval. Fail closed when sufficient evidence cannot be obtained. Produce no invented, unsupported, or incorrectly applicable publication releases. Preserve defined downstream interfaces and existing validation controls unless a change is explicitly approved. Provide reproducible telemetry showing what the retrieval system did and where time/resources were consumed. Avoid benchmark-specific hardcoding or leakage. Demonstrate improvement using controlled testing rather than anecdotal examples. Safety and evidence integrity take precedence over retrieval rate. If a publication cannot be sufficiently validated, the correct result is a refusal. Scope This engagement is specifically for the FIND/retrieval milestone. It does not include mobile application development, UI work, downstream preventive-maintenance extraction or generation, or unrelated application development. The repository contains an existing FIND implementation, test harnesses, historical benchmark results, failed-experiment documentation, telemetry, RCA artifacts, and control assets. Initial Paid Milestone The engagement will begin with a short, fixed-fee technical review. The contractor will: Review the supplied governance, technical handoff, relevant RCA, and benchmark evidence. Inspect the existing FIND implementation and relevant artifacts. Reconstruct and verify the current retrieval flow from the actual implementation. Review previous experiments and identified failure modes. Identify material telemetry or evidence gaps, if any. Provide a concise technical assessment of the remaining bottleneck. Recommend the smallest defensible path to completing FIND. Provide a proposed fixed price and level of effort for the completion milestone. This is intended to be a focused technical assimilation and decision exercise, not a lengthy discovery project. Existing RCA and experimental evidence is project input. Repeating previously completed analysis or experiments without identifying a new independent variable or explaining why the existing evidence is insufficient will not be considered productive milestone work. No material implementation changes should be made during this milestone without approval. Completion Milestone Following successful completion of the technical review, the second fixed-fee milestone will cover implementation and proof of the agreed FIND solution. Final acceptance criteria will be established from the supplied technical documentation and control/benchmark assets before implementation begins. Acceptance will include measured performance in: Retrieval correctness Equipment/publication applicability Evidence integrity Correct fail-closed behavior Zero new unsafe or unsupported releases Long-tail/archive preservation Wall-clock performance Retrieval/resource work Reproducibility Regression performance A solution that is faster only because it weakens evidence requirements, eliminates legitimate long-tail retrieval, hides work outside measurement, or hardcodes benchmark knowledge will not be accepted. Deliverable and Integration Requirements FIND will be developed and proven outside the production mobile applications. Android and iOS integration are explicitly outside the scope of this engagement. The final deliverable must be integration-ready. It will subsequently be integrated into Android and iOS by others, without assistance from the contractor. Ease of integration is therefore an acceptance requirement, not merely a documentation preference. The completed FIND milestone must include: Executable, production-quality source code within the supplied isolated research environment. One clearly defined and documented programmatic entry point. A stable, machine-readable input/output contract. Explicit handling of successful retrieval, validated refusal, error, and timeout conditions. No manual research, notebooks, developer intervention, or contractor-operated steps during normal execution. All dependencies, configuration, external services, credentials/interfaces, timeouts, and runtime assumptions explicitly documented. No undocumented local dependencies, hidden services, or contractor-specific infrastructure. Automated tests covering the integration interface and expected behavior. Reproducible setup and execution from a clean environment. Sufficient interface and implementation documentation for developers unfamiliar with the contractor's work to integrate FIND without additional explanation. A final handoff package containing source code, interface specification, configuration/dependency requirements, setup instructions, test instructions, acceptance evidence, known limitations, and unresolved risks. The reference implementation should remain compatible with the existing Python-based isolated research environment unless an alternative is proposed during the initial technical review and explicitly approved. The contractor must design the integration boundary on the assumption that they will not participate in the subsequent Android or iOS integration. A technically successful FIND implementation that requires substantial reverse engineering, restructuring, or contractor assistance to integrate will not satisfy the milestone requirements. Production Android and iOS application code must not be modified as part of this engagement. Communication and Delivery Expectations Technical ability alone is not sufficient for this engagement. Communication, ownership, and reliable execution are requirements. The contractor will be expected to: Establish a time-bound communication cadence at the start of the engagement and adhere to it. The cadence must define when progress updates will be provided, how blockers will be escalated, and when the next committed deliverable or decision point is expected. Establish clear deliverables and realistic dates before committing to them. Develop and maintain a concise risk register throughout the engagement. Risks, issues, technical blockers, dependencies, failed approaches, and unexpected results should be captured as they are identified, including impact, mitigation/next action, owner, and current status. Material changes in risk must be communicated promptly rather than waiting for the next scheduled status update. Meet self-committed deadlines. If a date becomes at risk, communicate that before the deadline, explain why, and provide a revised recovery plan. Provide concise, substantive progress updates during active work. I should not need to repeatedly request project status. Maintain a concise decision/change log. Proposed changes to agreed scope, acceptance criteria, control assets, validation gates, or material architecture assumptions must be documented and approved before implementation. Maintain clear evidence of what was changed, what was tested, what passed or failed, and what remains unresolved. Take ownership of the agreed milestone rather than waiting for detailed day-to-day task management. Be direct when evidence shows an approach is not working. An early, well-supported negative result is preferable to losing time pursuing an approach that cannot meet the requirements. Milestones are complete only when the agreed deliverables and acceptance evidence have been provided and reviewed. Code completion, a successful demonstration, or elapsed effort alone does not constitute milestone acceptance. Missed commitments without advance communication, failure to maintain the agreed communication cadence or risk register, extended periods without meaningful status, unauthorized changes to agreed scope/acceptance criteria, or repeated failure to manage agreed work will be grounds for ending the engagement. I will be responsive and available when decisions or clarification are required. In return, I expect professional project management and communication from the contractor. Experience I Am Looking For Strong candidates will have significant hands-on experience with several of the following: Information retrieval and search infrastructure Technical-document or publication discovery Web search APIs or SERP-based retrieval systems Crawling and targeted document acquisition HTTP and PDF acquisition pipelines Candidate ranking and relevance scoring Metadata/document indexing Manufacturer/domain-specific search Archive.org / Wayback / CDX-style retrieval Identity/entity resolution Deterministic retrieval orchestration Python Instrumentation and performance measurement Bounded use of LLMs within retrieval systems Experience building real search/retrieval systems is considerably more relevant than experience writing prompts or building generic RAG applications. Availability This is an expedited engagement. I am looking for someone who can start quickly and give the project concentrated attention through completion. I am not looking for a contractor who can only contribute a few hours per week over an extended period. Please state your realistic availability and earliest start date. Application Questions Please answer each question directly: Describe the most technically similar search, retrieval, crawling, or document-discovery system you personally designed or implemented. What specifically did you build? How would you approach a retrieval system where common documents may be easy to find, but difficult cases can involve ambiguous equipment identity, poorly indexed OEM sites, obsolete publications, distributor-hosted copies, or web archives? How would you prove that a retrieved technical publication actually applies to the requested manufacturer/model rather than merely being topically related? What telemetry would you require before attempting to optimize retrieval latency? Based on this description, what is the largest technical uncertainty you would want to resolve first? What fixed price would you propose for the initial technical-review milestone? Based only on the information in this posting, what preliminary level-of-effort range would you expect for completing FIND? State your assumptions. This is not a request for a binding implementation quote. What is your earliest start date, and how many hours can you realistically dedicate during the first two weeks? Will you personally perform the work? If other people will participate, identify their roles. Describe how you normally communicate progress on a short, technically uncertain project. If you realize on Wednesday that a Friday commitment is going to slip, what specifically do you do? Please do not submit a generic proposal. I am much more interested in concise evidence of directly relevant engineering experience and how you think about this retrieval problem. Client's questions:
Budget:
not specified
1 hour ago
|
|||||
|
Electrical Panel Schematic Mapping
Applied
|
~27 - 338 USD
|
2 hours ago |
-
|
||
|
I need a complete wiring schematic for an existing electrical control panel that currently runs without any formal documentation. You will be reverse-engineering what is already in the cabinet and turning it into a clear, professional drawing set.
What I can provide • Physical access to the panel during agreed site hours • High-resolution photos of every section and component • Verbal or written notes describing functions, wire tags, and any observations I have made Scope of work You will trace every circuit, identify all devices and connections, and produce a legible schematic in a standard CAD format—AutoCAD Electrical, EPLAN, or similar—along with a simple bill of materials. All wire numbers and component labels must match what you find on site so the drawing can be used for future troubleshooting and upgrades. Acceptance criteria • Complete multi-sheet schematic showing power, control, and field I/O • BOM listing part numbers, ratings, and quantities • Native CAD files plus locked PDFs ready for printing • A short hand-over session (video call or on site) to walk through the drawing set and answer questions If you have experience capturing undocumented panels and are comfortable working with live equipment safely, let’s schedule the first visit and get this documented. Skills: CAD/CAM, Electrical Engineering, PCB Layout, AutoCAD, Circuit Design, Bill of Materials (BOM) Analysis, Reverse Engineering, CAD / SolidWorks
Fixed budget:
20 - 250 GBP
2 hours ago
|
|||||
|
Creative Strategist (DTC / Meta Ads / Orthopedic Footwear)
Applied
|
$10 - $55
/ hr
|
2 hours ago |
5
|
||
|
We are a fast-growing orthopedic footwear brand currently generating $250k–$300k/month in revenue, with $150k–$200k/month in Meta ad spend.
We are now scaling aggressively and looking for a full-time Creative Strategist to join us long-term and help take the brand to the next level. This is NOT an entry-level role. We are looking for someone deeply experienced in DTC marketing, direct response advertising, and performance creative strategy. What You'll Be Responsible For: Deep competitor and market research Identifying winning ad angles and hooks Writing hooks, scripts, and ad concepts Briefing video editors and UGC creators Creative performance analysis Concept testing and iteration Landing page input and messaging Building and improving the creative pipeline Reverse-engineering winning ads in the market Requirements: Strong DTC / eCommerce background Strong understanding of Meta advertising Experience working with 7-figure/month brands Direct response / VSL background is a major plus Footwear experience is a plus (not required) Who We're Looking For: Obsessed with performance and consumer psychology Native direct-response thinker Proactive and self-motivated Fast execution without handholding Able to identify and scale winning concepts quickly What We Offer: Full-time long-term opportunity Fast-growing brand already operating at scale High ownership and direct impact Performance-based bonus structure Collaborative marketing team with designers and video editors Opportunity to grow with the company as we scale aggressively Compensation: Starting at $3,000/month Performance bonuses available To Apply: Please include: Brands you've worked with Your portfolio Results you've achieved (with proof/screenshots if possible) Relevant case studies or winning creatives you've worked on
Hourly rate:
10 - 55 USD
2 hours ago
|
|||||
|
Senior WebGL / Shader / Three.js Engineer
Applied
|
$5
|
3 hours ago |
5
|
||
|
We're building a high-performance interactive visualization tool that renders complex 3D scene
data onto 2D surfaces (Canvas, SVG) — and we need it to look stunning and run fast. We're looking for a graphics engineer with deep WebGL and shader expertise who treats rendering performance and visual fidelity as two sides of the same problem: architecting pipelines in Three.js that deliver smooth, real-time interactivity at scale without compromising image quality. Key Responsibilities: WebGL & Shaders ● Write custom GLSL shaders (vertex/fragment) for advanced effects, post-processing, and precision rendering. ● Architect and optimize the WebGL pipeline — draw calls, state changes, overdraw, and shader cost. ● Implement anti-aliasing, depth handling, and 3D-to-2D projection techniques that preserve visual accuracy. ● Integrate WebGL rendering with Three.js scene management, camera controls, and materials. Three.js & Scene Architecture ● Design and optimize rendering workflows that translate 3D geometry, transforms, and scene graphs into 2D visual outputs. ● Use Three.js for scene management, camera controls, and WebGL integration. ● Implement batching, instancing, culling, and LOD strategies to handle large-scale datasets in real time. ● Implement efficient 3D-to-2D projections, raycasting, picking, and coordinate transformations. Performance & Visual Quality ● Profile and eliminate GPU/CPU bottlenecks to stay within tight frame budgets. ● Tune interactivity (zoom, pan, filter, select) for smooth real-time response. ● Balance performance trade-offs against visual fidelity — and know when each matters. ● Leverage D3.js for data-driven visual elements and DOM/SVG interactions. Required Skills: ● Expert-level WebGL and Three.js (or raw WebGL) experience. ● Proven experience writing GLSL shaders (vertex/fragment) and working with the WebGL pipeline. ● Strong D3.js skills for data visualization and interactivity. ● Deep understanding of 3D-to-2D projection, viewport mapping, and depth handling. ● Solid grasp of linear algebra, coordinate systems, matrix/quaternion math, and projective geometry. ● Proficiency in JavaScript/TypeScript and performance debugging tools (Chrome DevTools, Spector.js, RenderDoc, etc.). ● Experience with canvas rendering, SVG, and DOM manipulation. Preferred Qualifications (Big Pluses): ● Strong mathematical background (computational geometry, numerical methods, or similar). ● Experience with GIS projections, geospatial data, or CAD-like rendering. ● Familiarity with rendering engines, scene graphs, or custom rasterization approaches. ● Demonstrated work in anti-aliasing, LOD, culling, batching, or shader optimization. To Apply: Please include: ● Links to portfolios or repos showing WebGL / GLSL shader / Three.js work — ideally with before/after performance or visual improvements. ● Examples of 3D-to-2D rendering or complex data visualizations. ● A brief note on your experience with geometry/math in rendering contexts, and how you've balanced performance against visual quality.
Fixed budget:
5 USD
3 hours ago
|
|||||
|
Highly-Skilled Software Engineer Needed
Applied
|
$3,000
|
4 hours ago |
3
|
||
|
We are seeking a highly-skilled software engineer fluent in English to join our team. The ideal candidate will have a strong background in software development and excellent communication skills. Responsibilities include developing and testing software applications, collaborating with cross-functional teams, and ensuring high-quality deliverables. If you are passionate about software engineering and have a knack for problem-solving, we would love to hear from you.
Client's questions:
Fixed budget:
3,000 USD
4 hours ago
|
|||||
|
Zero-Click Mobile Security Exploitation
Applied
|
$890,000 - $1,000,000
|
13 hours ago |
-
|
||
|
Submission Type
Vulnerability Disclosure / Bug Bounty Submission Submission Category Mobile Security — Zero-Click Exploitation Severity Classification Critical (CVSS 9.0–10.0) 1. Submission Summary This submission describes a discovered zero-click attack chain affecting mobile messaging applications on both iOS and Android platforms. The vulnerability allows an attacker to compromise a target device without any user interaction. This document serves as the formal description for researchers, security teams, and bug bounty programs to evaluate, reproduce, and remediate the reported issue. Submitted by: [Researcher Name / Handle] Contact: [Secure Email / PGP Key] Date of Discovery: [Date] Disclosure Type: Coordinated / Responsible Disclosure 2. Vulnerability Overview What was found: A chain of vulnerabilities enabling zero-click remote code execution on mobile devices through a messaging application. Where it was found: Mobile messaging client on iOS and Android How it was found: [Fuzzing / Static analysis / Manual code review / Traffic analysis / Reverse engineering] Why it matters: An attacker can compromise a target device with no user interaction — no clicks, no downloads, no prompts. The victim only needs to receive a message. 3. Affected Platforms and Versions Platform Application Version OS Version Status iOS [Version range] [iOS range] Confirmed vulnerable Android [Version range] [Android range] Confirmed vulnerable Patch Status: [Unpatched / Partially patched / Patched in version X] 4. Vulnerability Details 4.1 Root Cause Describe the underlying flaw: Type: [Memory corruption / Logic flaw / Command injection / Deserialization / Authorization bypass] Component: [Media parser / Session handler / URL scheme handler / AI content pipeline] Trigger: [Malicious message / Auto-downloaded media / Linked-device sync / AI-generated response] 4.2 Attack Chain Describe the chain of events: Initial vector: Attacker sends a crafted message to target Processing flaw: Client processes the message without validation Privilege escalation: Attacker gains code execution or session access Persistence: Attacker maintains access via [linked device / background process / scheduled task] 4.3 Platform Differences Aspect iOS Android Trigger mechanism [Describe] [Describe] Exploited component [Describe] [Describe] Blocking protections [Lockdown Mode, BlastDoor] [Scoped Storage, SELinux] Exploit reliability [High/Medium/Low] [High/Medium/Low] 5. Prerequisites For the attack to succeed, the following conditions must be met: □ Target uses affected app version □ Target runs affected OS version □ Auto-download enabled (if applicable) □ Target is in a group with attacker (if applicable) □ Linked-device feature active (if applicable) □ Specific network conditions (if applicable) Minimum requirements: [List the absolute minimum conditions] 6. Proof of Concept Important: Provide only enough to demonstrate the vulnerability. Do not weaponize. 6.1 Reproduction Steps (High-Level) [Step 1 — setup] [Step 2 — trigger] [Step 3 — observe] [Step 4 — confirm compromise] 6.2 Evidence Collected □ Crash logs □ Memory dumps □ Network captures □ Screenshots / video □ Log excerpts (unified logs / logcat) 6.3 Indicators of Compromise Indicator Platform Description [Log event] iOS [Description] [File artifact] Android [Description] [Network signature] Both [Description] 7. Impact Assessment 7.1 Technical Impact Confidentiality: [Full device access / Message access / Contact access] Integrity: [Code execution / Message tampering / Session hijack] Availability: [Device bricking / App crash / Data loss] 7.2 Realistic Attack Scenarios Targeted surveillance: High-value individuals (journalists, activists, executives) Mass exploitation: If trigger is broadcastable Supply chain: If exploited via shared content 7.3 Severity Justification CVSS Score: [X.X] Vector: [CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H] Rationale: Zero-click, remote, cross-platform, high impact 8. Reproduction Environment Item Details Test device 1 [iPhone model, iOS version] Test device 2 [Android model, OS version] App version [Version tested] Network setup [Wi-Fi / Cellular / Isolated] Tools used [Frida / LLDB / Wireshark / etc.] 9. Detection Guidance for Defenders 9.1 iOS Detection Unified log queries: [Provide specific predicates] sysdiagnose indicators: [List artifacts] Linked-device audit: [How to check for rogue sessions] 9.2 Android Detection logcat queries: [Provide specific filters] File system artifacts: [Paths to check] Permission audit: [What to review] 9.3 Network Detection C2 patterns: [URLs, headers, timing] Beacon behavior: [Interval, size, destination] Anomalous traffic: [What stands out] 10. Mitigation Recommendations 10.1 Immediate (User-Level) Disable auto-download for all media types Restrict group additions to contacts only Enable two-step verification Audit linked devices and remove unknown sessions Enable iOS Lockdown Mode (high-risk users) Restrict Android app permissions 10.2 Short-Term (Vendor-Level) Patch the vulnerable component Add input validation for the trigger vector Sandbox the affected parser Enforce authentication on session sync 10.3 Long-Term (Platform-Level) Strengthen sandboxing for media parsers Add memory safety protections (e.g., PAC, MTE) Improve AI content pipeline validation Expand detection telemetry for zero-click vectors 11. Disclosure Timeline Date Event [Date] Vulnerability discovered [Date] Initial report submitted to vendor [Date] Vendor acknowledged receipt [Date] Vendor requested additional details [Date] Patch released [Date] Public disclosure Disclosure Window: [90 days / Extended / Coordinated] 12. Submission Checklist Before submitting, confirm: □ All affected platforms and versions documented □ Root cause clearly explained □ Reproduction steps provided (non-weaponized) □ Impact assessment completed □ Detection guidance included □ Mitigation recommendations provided □ Ethical boundaries respected (no exploit code) □ Public sources cited where applicable □ Researcher contact information included □ Disclosure timeline documented 13. Researcher Declaration I confirm that: This vulnerability was discovered through lawful, ethical research No unauthorized access to third-party systems occurred No exploit code or weaponized payloads are included in this submission This report is submitted in good faith for defensive purposes I agree to coordinate disclosure with the affected vendor Researcher Name: ________________________ Signature: ________________________ Date: ________________________ 14. Attachments □ Full technical report (PDF) □ Log excerpts (redacted) □ Network captures (sanitized) □ Screenshots / video evidence □ Reproduction script (non-weaponized) □ References to related CVEs / advisories 15. Contact Information Primary Contact: [Name] Email: [Secure email] PGP Key: [Fingerprint] Alternate Contact: [Name / Email] Organization: [If applicable] END OF SUBMISSION DESCRIPTION Skills: Penetration Testing, Reverse Engineering
Fixed budget:
890,000 - 1,000,000 USD
13 hours ago
|
|||||
|
Recover Published iOS App Code
Applied
|
$30 - $250
|
15 hours ago |
-
|
||
|
An iOS app I own is live in the Apple App Store, yet the entire original project is missing—no repository access, no local backups, nothing at all. What I still hold is the production build that Apple distributes, plus my own App Store Connect credentials.
The goal is to retrieve the app’s source code, or at least rebuild a functionally identical Xcode project that I can maintain going forward. Only the source code matters; all assets and configuration files are already in my possession through the binary and App Store metadata. Because there is zero existing codebase to pull from, the work will most likely involve decompiling and reverse-engineering the published binary. Familiarity with tools such as Hopper, Ghidra, IDA, or similar Objective-C/Swift decompilers will be essential, along with solid understanding of iOS frameworks, provisioning profiles, and Xcode project structure. Deliverables • A compilable Xcode project that reproduces the current App Store build’s functionality. • Clear build instructions so I can archive, sign, and upload future releases myself. • A brief technical report outlining the reverse-engineering approach, any third-party libraries identified, and areas where source parity could not be reached (if any). Acceptance criteria • The rebuilt app installs on a test device and matches the live version’s features and UI flow. • Apple’s App Store Connect validation passes with no new warnings beyond those in the existing binary. Feel free to suggest the most efficient path—whether straight binary decompilation, partial rewriting after interface extraction, or another method you’ve proven effective. Confidentiality and adherence to Apple’s policies are, of course, non-negotiable. Skills: Mobile App Development, iPhone, Objective C, Swift, iOS Development, Reverse Engineering, Xcode, iOS
Fixed budget:
30 - 250 USD
15 hours ago
|
|||||
|
AI Video & Content Growth Operator — Competitor-Inspired Content at Scale
Applied
|
not specified | 17 hours ago |
5
|
||
|
We run an existing web service that helps people control their iPhone screen time and restrict access to distracting or unwanted apps and content.
We’re looking for a hands-on operator who already knows how to generate, recreate, and produce videos at scale using advanced AI tools. AI must be the foundation of your production workflow, from analyzing reference content to generating finished videos and producing variations. THE CORE ASSIGNMENT Study what works for competitors, understand why it works, and rapidly produce our own versions and improvements using AI. You should be experienced in reverse-engineering successful content: hooks, scripts, pacing, visual structure, storytelling, and calls to action. Then turn those insights into a repeatable production system that creates and publishes a steady stream of relevant content for our product. WHAT YOU WILL DO Build an AI video production workflow • Select and operate advanced AI tools for video generation, image generation, voice, editing, captions, and localization. • Generate finished videos from concepts, scripts, and visual references. • Create batches of variations with different hooks, scenes, messages, and calls to action. • Build reusable templates and workflows that increase output while maintaining quality. • Check generated content for factual errors, visual defects, weak messaging, and inconsistent branding. Recreate successful competitor concepts • Continuously monitor competitors and relevant creators. • Identify videos and content formats worth recreating, adapting, or improving. • Rebuild successful concepts and structures using original scripts and original or properly licensed assets. • Use third-party footage, likenesses, or cloned voices only with appropriate permission. • Maintain a reference library and explain what makes each selected example worth testing. Own publishing and distribution • Produce and publish content for TikTok, YouTube Shorts, Instagram Reels, and Facebook. • Adapt videos, captions, titles, and calls to action for each platform. • Manage an agreed publishing calendar across our accounts. • Repurpose strong concepts into website articles, FAQs, landing-page content, and other useful formats. Bring entrepreneurial judgment • Propose new angles, content series, audience segments, and growth opportunities. • Understand the connection between content, our product, and customer acquisition. • Track performance and use results to decide which concepts to expand, change, or stop. • Distinguish views and engagement from relevant traffic, sign-ups, and paying customers. • Independently move from identifying an opportunity to creating, publishing, and evaluating it. REQUIRED EXPERIENCE You must have practical experience producing AI-generated video in batches. Please show evidence that you can: • Generate complete videos using AI. • Recreate a reference format with your own assets and execution. • Produce multiple useful variations efficiently. • Maintain quality across a recurring publishing schedule. • Explain production time, tool costs, manual work, and realistic output capacity. Strong product understanding, copywriting, and marketing instincts are essential. Experience publishing website content is also required. Choose the tools you believe are best. We expect you to know the current AI video landscape and explain the trade-offs in your workflow. HOW WE START We’ll begin with a paid pilot using agreed reference content. You will analyze the references, produce a batch of original AI-generated videos and variations, and demonstrate a repeatable workflow. Before starting, we’ll agree on deliverables, quality standards, tool costs, and publishing permissions. Successful collaboration can become an ongoing engagement. TO APPLY Please answer briefly: Share three AI-generated videos you personally produced. Explain your contribution and the tools used. Show an example of a reference concept you recreated or adapted into an original video. Describe your workflow for producing videos in batches, including quality control. What weekly output can you realistically deliver, at what complexity, and with how much manual intervention? What would your paid pilot cost, and which tool or generation costs are additional? Describe one content or marketing idea you initiated yourself and what you learned from it. Individual freelancers only. You must personally execute the work. No agencies or undisclosed subcontracting. All application communication must remain on Upwork. Do not contact us through personal email, phone, WhatsApp, LinkedIn, or company channels.
Budget:
not specified
17 hours ago
|
|||||
|
Senior Payment Fraud & Threat Intelligence Engineer
Applied
|
$5,000
|
20 hours ago |
5
|
||
|
Title: Senior Payment Fraud & Threat Intelligence Engineer
We are looking for a senior technical investigator to help map suspicious payment and crypto on-ramp infrastructure across high-risk online industries. This is not a standard fraud analyst or manual QA role. We need someone capable of independently investigating complex web-based payment flows and identifying the technical relationships between: Merchant → payment gateway/intermediary → crypto on-ramp/off-ramp provider Project objectives: – Identify merchants using embedded or redirected crypto purchase flows – Determine which gateway, intermediary platform, or orchestration layer is involved – Identify downstream on-ramp/off-ramp providers – Detect pre-populated wallet addresses, merchant IDs, partner IDs, callback URLs, API endpoints, and other technical fingerprints – Find connections between apparently unrelated merchants and payment infrastructure – Document each finding with clear, reproducible evidence Typical investigation methods: – Browser DevTools and network traffic analysis – HAR capture and interpretation – JavaScript and source-code analysis – API endpoint and request-parameter analysis – Redirect-chain investigation – Passive DNS, WHOIS, certificate, and infrastructure analysis – URLScan, PublicWWW, GitHub/code search, and similar OSINT tools – Headless browser automation using Playwright, Puppeteer, or Selenium – Analysis of anti-bot and dynamically loaded checkout flows Required experience: – Senior-level experience in payment fraud, threat intelligence, cyber investigations, or payment infrastructure – Strong understanding of payment gateways, PSPs, acquiring, card processing, crypto on-ramps/off-ramps, wallets, and checkout architecture – Ability to analyse JavaScript, APIs, redirects, browser requests, and third-party integrations – Experience investigating high-risk or abuse-related payment ecosystems – Strong OSINT and technical evidence-collection skills – Ability to distinguish verified findings from assumptions – Excellent written English and structured reporting Preferred background: – Fintech, payment processor, crypto exchange, fraud intelligence provider, cybersecurity company, or law-enforcement investigation unit – Previous investigations involving merchant laundering, transaction laundering, unauthorized payment flows, or crypto-payment abuse – Experience automating infrastructure discovery and relationship mapping Initial assignment: The first engagement will be a paid 10-hour technical investigation. You will receive a defined scope, existing findings, known technical indicators, and the required reporting structure. Expected outcome: – A structured list of newly identified merchant/payment-flow URLs – Gateway and intermediary identification – On-ramp/off-ramp provider identification – Technical fingerprints connecting the involved parties – Evidence for every confirmed finding – Clear distinction between confirmed facts, strong indicators, and assumptions – Recommendations for a larger second investigation phase Budget: Fixed price: $900 for the initial 10-hour investigation. Strong performance may lead to a larger Phase 2 engagement and an ongoing role in developing a managed Payment Threat Intelligence product. When applying, please answer: 1. Describe a similar payment-fraud or infrastructure investigation you have completed. 2. Which tools would you use to map a merchant-to-gateway-to-on-ramp flow? 3. How would you identify the provider behind a dynamically loaded or redirected checkout? 4. Are you comfortable analysing JavaScript, APIs, HAR files, and browser network traffic? 5. What relevant experience do you have with crypto on-ramps/off-ramps or high-risk payment processing? 6. Please include one anonymised example of a technical investigation report or evidence structure. Important: This is an authorised defensive intelligence and research project. We are not looking for penetration testing, exploitation, unauthorized access, or interference with third-party systems.
Fixed budget:
5,000 USD
20 hours ago
|
|||||
|
Instagram Growth Funnel Operator & Premium UI/UX/Video Editor (Executive Brand)
Applied
|
$100
|
21 hours ago |
3
|
||
|
Job Description:
We are an elite executive coaching brand catering to high-earning founders, executives, and professionals navigating international markets. We are seeking a high-caliber Instagram Growth Funnel Operator who can bridge the gap between creative visual execution and backend monetization. This is not a position for generic social media managers who rely on templated aesthetics or engagement-only metrics. We need a conversion-focused operator who knows how to capture attention and direct it seamlessly into our pipeline. ## Key Responsibilities: * Competitor Scouting & Strategy: Proactively reverse-engineer what is working in our niche. You will analyze high-performing competitor accounts, breaking down their viral hooks, visual layouts, and content structures, and adapt those insights into our proprietary brand framework. * Premium Short-Form Video Editing: Deliver clean, high-end short-form videos using Adobe Premiere Pro and After Effects. Our brand aesthetic is sophisticated, elite, and corporate. You must maintain a strict, organic look—absolutely zero chaotic flashing text, hyperactive TikTok transitions, or generic Canva templates. * Inbound Funnel Conversion: Take complete ownership of converting casual profile visitors into high-ticket clients. You will structure, execute, and optimize low-friction conversational funnel mechanics (such as automated, boardroom-compliant DM sequences triggered by pinned comments) to nurture leads silently and cleanly. * Account Management: Manage daily content publishing, optimization, and platform operations on Instagram. ## Required Skills & Tools: * Mastery of professional editing suites (such as Adobe Premiere Pro / After Effects). * Proven experience reverse-engineering competitor content to achieve rapid audience growth. * Clear understanding of high-ticket lead generation and low-friction inbound DM funnel strategies. * Experience handling professional social media operations with zero room for error. * Note: While we use automation tools like GoHighLevel (GHL) and n8n to anchor our operations, your immediate mandate will be the front-end growth, competitive intelligence, and backend conversion strategy on Instagram. ## To Apply: Please share: 1. A brief overview of your experience scaling and monetizing short-form content. 2. 2–3 examples of short-form videos you have edited that demonstrate a clean, premium, or professional aesthetic. 3. A short sentence describing how you approach moving a follower from an Instagram comment into an enclosed DM conversion pipeline.
Fixed budget:
100 USD
21 hours ago
|
|||||
|
Data & Automation Engineer
Applied
|
$15,000
|
21 hours ago |
1
|
||
|
Description
We run a data-heavy operation in the sports data space. We're hiring one all-around engineer for ongoing work: real-time data acquisition, Telegram automation, and feed analysis. This starts with a small fixed-price test project and becomes a long-term ongoing engagement for the right person. What the work is: 1. Low-latency data acquisition (the core skill). We need endpoint-level scraping, not browser automation. That means finding and hitting a site's internal JSON/XHR endpoints directly, handling authenticated sessions with automatic re-login, and polling at sub-second latency. If your toolkit is primarily Selenium or Playwright, this role is not a fit. Services must be production-grade: run 24/7 unattended, self-heal on session expiry or failure, and alert us the moment something breaks or an endpoint changes shape. 2. Telegram automation. Scraped data and alerts get pushed to Telegram via the Bot API — formatted per-event alerts, channel routing, and bot-based workflows. Our existing stack is Python + Google Sheets API + Telegram Bot API, and new work should fit those patterns. 3. Feed comparison & analysis. Reconciling multiple real-time data feeds against each other (including third-party APIs), flagging discrepancies, filtering signal from noise, and surfacing conclusions. You're welcome to use AI tooling in your workflow — but you own the results, and you need the judgment to know when the output is wrong. Availability: We don't need 24/7 on-call, but when something breaks we need responsive turnaround during working hours and clear communication. Slow responders and disappearing acts are the reason this post exists. How hiring works: Step 1 is a small, well-defined fixed-price test project (real work, real pay — an authenticated endpoint poller with Sheets + Telegram output, full spec provided on award). Deliver that well and we move to an ongoing hourly arrangement with a steady pipeline of similar work. To apply, answer these in your cover letter: Describe a scraper you built by reverse-engineering a site's internal API rather than automating a browser. How did you find the endpoints, and how did you handle auth/session expiry? What's the lowest-latency polling system you've run in production, and how did it detect and recover from failures without you touching it? What's your typical response time when a production system you built breaks? Your Python experience with the Google Sheets API and Telegram Bot API, briefly. No agencies. Individual contractors only.
Fixed budget:
15,000 USD
21 hours ago
|
|||||
|
C++ Developer/Game Modder Needed for LOTR: The Battle for Middle-Earth
Applied
|
$2,500
|
1 day ago |
4
|
||
|
There is an old game (2004): The Lord of the Rings: The Battle for Middle-Earth (first part). An unofficial patch is needed for this game: to balance it and fix bugs in the old version.
Project description I am looking for an experienced game modder/developer to continue work on an unofficial balance and bug-fix patch for The Lord of the Rings: The Battle for Middle-earth (2004). The project has already been partially implemented by a previous developer. I have the existing project files and the latest working version of the mod, which will be provided to the selected developer. The remaining work includes additional balance changes, corrections to some previously implemented changes, AI/gameplay-related modifications, and several more technically complex changes that go beyond basic INI editing. A detailed and updated technical specification will be provided as an attached document. The attached specification should be treated as the current project requirements; the original requirements from the previous job post are no longer fully applicable. I am looking for someone who can first review the existing files and technical specification, determine the best implementation approach, and then continue development from the current state rather than starting the project from scratch. Payment will be fixed-price and milestone-based, not hourly. The project should be divided into clearly defined stages/milestones, with payment released after the agreed work for each stage has been completed and tested. Experience with game modding, INI/configuration systems, scripting, debugging, C/C++, reverse engineering or working with older PC games/game engines would be useful for this project.
Fixed budget:
2,500 USD
1 day ago
|
|||||
|
API Integration for SaaS Agent Development
Applied
|
$2,000
|
1 day ago |
1
|
||
|
Looking for an experienced AI/ML engineer to design and build production-grade AI agents for enterprise SaaS integration and support workflows. The role involves creating LLM-based, tool-using agents, connecting them to internal systems, and deploying solutions on cloud platforms. Experience with agent frameworks, API integrations, and enterprise SaaS environments is important. You should be able to help turn complex workflows into reliable, scalable agent-based solutions.
Client's questions:
Fixed budget:
2,000 USD
1 day ago
|
|||||
|
Need AI-Expert Software Developer for Business Application
Applied
|
$200 - $350
|
1 day ago |
-
|
||
|
Please send me sample of your best work.
I am looking for a highly experienced software developer to complete, improve, test, and commercially launch an existing proprietary business software application. To protect the project, the public posting will not disclose the software's industry, proprietary business logic, unique features, calculations, workflows, or competitive strategy. Full details will be shared only with bidders I am seriously considering. I would like my project done in 8 to 10 days. The code must be 100% original. You must speak, read, and write English proficiently. The developer must be an expert in AI-assisted and AI-generated code and must be capable of auditing existing code rather than assuming generated code is correct. You must identify and fix incomplete, broken, inaccurate, unreliable, or poorly designed functions and build any missing features required by the final specifications. This is not simply a coding assignment. The selected developer will be responsible for making the complete product work from end to end, including the software, user interface, local data/storage functions, calculations, reports, imports/exports, backups, licensing/subscription connections, website integration, downloads/delivery, and any required third-party service connections. Required Experience • Expert-level software development and debugging experience. • Strong experience reviewing, correcting, and completing AI-generated or AI-assisted code. • Experience with professional business/financial applications, dashboards, calculations, reporting, local data storage, CSV/Excel import/export, backup/restore, and PDF/document output. • Strong GUI/UX skills. The finished program must be extremely user friendly, with important functions easy to find and logically organized. • Experience integrating commercial software with websites, subscription/payment systems, licensing/activation systems, downloads, account communications, and other services when required. • Ability to test realistic end-to-end workflows and prove that every required feature actually works. Testing & Demonstration Requirements The developer must test and verify every feature, button, calculation, workflow, import/export, report, backup/restore function, integration, website connection, and commercial purchase/delivery process. Any failure must be fixed and retested. The developer must also provide clear step-by-step demonstrations using the actual working software and realistic business examples. I need to see what information is entered, what each feature does, the result it produces, and how a real customer would use it. Mockups or demonstrations of features that do not actually work are not acceptable. Agreements The selected developer must sign my Non-Reverse Engineering Agreement and Work Made for Hire Agreement before starting work on my project. When Applying • Describe your experience completing or repairing AI-generated software. • Provide examples of comparable business software you personally developed. • Explain your testing/QA process. • Confirm that you can handle website deployment, integrations, subscription/licensing setup, and commercial launch testing. • Confirm that you can create step-by-step demonstration videos using realistic examples and the actual working software. I will own the full and exclusive copyrights to all software, text, sound, images, raw files, source files, project files, and all work created for me. I will keep all work you provide the software, text, sound, images, raw files, source files, project files, and all work created for me. and I will own all copyrights to all work. I will release the full milestone when the software is completed, delivered, and accepted by me. I do not pay any milestones until software, source code is completed, all files delivered, all testing, all fixes, all features, all setup, all screen capture videos, are completed and accepted by me. If your work is High Quality and exactly what I need I would be interested in considering you for Future projects. I don't communicate on Sundays and I don't expect you to work on Sundays. Skills: JavaScript, Software Architecture, HTML5, Debugging, Software Development, Web Development, API Integration, Desktop Application, AI Development, AI Code Review
Fixed budget:
200 - 350 USD
1 day ago
|
|||||
|
Create two STP files (tray accessory) for compression molding
Applied
|
not specified | 1 day ago |
3
|
||
|
We have a .STP of a silicone tray (~12 x 5 x 17 inches). Need to modify to make 2 new tray models in .STP for compression molding. STP models must incorporate adequate draft angles, uniform wall thicknesses, generous radii, and straightforward parting lines, fully accounting for undercut elimination, volumetric shrinkage, and compound flow dynamics. Looking for fixed fee contract. Please propose, if interested. Thank you
Budget:
not specified
1 day ago
|
|||||
|
3d Developer/Prototyping for Off-Road Accessory Company
Applied
|
$20 - $60
/ hr
|
1 day ago |
5
|
||
|
# 3D Product Developer — Off-Road Vehicle Accessories (Ongoing, High Availability)
## About us XG Cargo designs and manufactures modular cargo and storage systems for Jeep Wrangler, Ford Bronco, and other off-road platforms. We hold OEM partnerships with Ford, Jeep, Land Rover, and Jaguar, and we ship product under tight development cycles. We're looking for a 3D developer to become a long-term extension of our product team. ## What you'll do - Model new off-road accessory parts from concept sketches, measurements, and 3D vehicle scans (cargo systems, mounts, brackets, racks, shades, enclosures) - Build parametric CAD that's actually manufacturable — sheet metal, weldments, injection-molded and rotomolded parts, fasteners and hardware callouts - Design around real vehicle fitment: work from scan data and OEM reference geometry to guarantee bolt-up accuracy - Produce STEP/IGES files, 2D drawings with GD&T, and DFM-ready packages for our fab shops and overseas manufacturing partners - Iterate fast on revisions — we go through multiple design revs per part and need turnaround measured in hours, not weeks - Create Blender renders, exploded views, and short animations for marketing, Amazon/Shopify listings, and OEM presentations - Prep files for 3D printing and rapid prototyping ## Requirements - 3+ years of production CAD experience — SolidWorks, Fusion 360, or equivalent - Blender proficiency for photoreal product rendering and animation - Demonstrated automotive, powersports, off-road, or industrial hardware work (portfolio required — we will look at it closely) - Solid grasp of manufacturing processes: laser cutting, bending, welding, casting, molding, powder coat - Comfortable working from 3D scan meshes and reverse-engineering fitment - Excellent written English and clear, proactive communication ## Availability — read this before applying This is a **high-availability, always-on role.** We operate on Pacific Time and often need same-day turnarounds, late-night revision cycles, and weekend responsiveness when we're pushing toward a launch or an OEM deadline. You should expect to be reachable and responsive around the clock, including nights and weekends. If that doesn't fit your life right now, this isn't the right contract — no hard feelings. ## Nice to have - Experience designing for Jeep JL/JT or Ford Bronco specifically - KeyShot or equivalent rendering - Experience with off-road/overland aftermarket brands - Ability to run FEA or basic structural sanity checks ## Terms - Long-term, ongoing contract with consistent hours - Hourly or per-project — tell us which you prefer and your rate - Remote ## To apply 1. Send your portfolio, with at least two examples of parts that went to production 2. Tell us what CAD package you work in and what you'd use for renders 3. Describe a part you designed that had a fitment or manufacturing problem, and how you solved it 4. Confirm your time zone and what your realistic availability looks like
Hourly rate:
20 - 60 USD
1 day ago
|
|||||
|
Alt-Az Control System Replication
Applied
|
~872 - 1,743 USD
|
1 day ago |
-
|
||
|
I need a skilled engineer to reverse engineer and replicate an alt-azimuth control system used in a astro observation.setup.
Key requirements: - Detailed analysis to understand functionality - Precision in creating an exact replica - Experience with mechanical systems and consumer electronics Ideal skills: - Mechanical engineering - Experience with consumer electronic devices - Attention to detail and problem-solving skills Please provide examples of similar work done. Skills: Engineering, Electronics, Mechanical Engineering, Electrical Engineering, Prototyping, Technical Documentation, Mechanical Design, Reverse Engineering, Product Development, CAD / SolidWorks
Fixed budget:
750 - 1,500 EUR
1 day ago
|
|||||
|
Python API Integration Developer Needed – Amazon, MercadoLibre, Vinted, Instagram, Facebook & TikTok
Applied
|
not specified | 2 days ago |
3
|
||
|
# Python API Integration Developer Needed – Amazon, MercadoLibre, Vinted, Instagram, Facebook and TikTok
## Project Overview I am looking for an experienced Python developer to build a modular, maintainable data-integration system connecting to six e-commerce and social platforms: 1. Amazon 2. MercadoLibre 3. Vinted 4. Instagram 5. Facebook 6. TikTok This project must use only official APIs, authorized integrations, client-authorized account data, licensed data sources, or other access methods expressly permitted by the relevant platform. Compliance with each platform's Terms of Service, API terms, privacy requirements and rate limits is mandatory. This project does not require and must not include unauthorized web scraping, bypassing access restrictions, CAPTCHA circumvention, rate-limit circumvention, private data collection or any other method prohibited by the relevant platform. --- # Main Objective The objective is to build one Python-based framework containing separate connectors for each supported platform. The system should: * Connect to permitted platform APIs * Retrieve the data available under the authorized API scopes * Normalize the returned data * Export data to JSON and CSV * Handle multiple countries or locales where supported * Provide clear logs and error handling * Be easy to configure and maintain * Include offline test fixtures * Include automated tests * Include full source code and documentation I want a maintainable system rather than six unrelated scripts. --- # Platforms The intended integrations are: ## E-Commerce * Amazon * MercadoLibre * Vinted ## Social Media * TikTok The developer must first confirm which official or authorized API is appropriate for each platform and what data is available through that API. If a requested data field is not available through an authorized method, this must be clearly documented. Do not replace an unavailable API feature with unauthorized scraping or circumvention. --- # 1. Compliance and API Feasibility Review Before completing the integrations, I want the developer to provide a short feasibility matrix covering all six platforms. For each platform, state: * Official or authorized API being used * Authentication method * Required permissions or account type * Available data fields * Country or locale support * API rate limits where applicable * Any approval requirements * Any important API restrictions * Any requested information that cannot legally or technically be obtained through the permitted API If API approval or a particular business account is required, this should be identified early. Where I have the necessary account or API access, I will provide the required credentials securely after the contract begins. --- # 2. Modular Architecture Each platform should have its own connector so a change to one integration does not break the others. A structure similar to this would be suitable: ```text project/ connectors/ amazon/ mercadolibre/ vinted/ instagram/ facebook/ tiktok/ config/ mappings/ exporters/ fixtures/ logs/ tests/ .env.example requirements.txt README.md main.py ``` Equivalent professional architecture is welcome. --- # 3. Official and Authorized Access Only All integrations must use permitted methods. Examples include: * Official REST APIs * Official SDKs * OAuth-authorized APIs * Client-authorized account APIs * Platform-provided business APIs * Client-provided exports * Properly licensed data providers where permitted The application must respect: * API authentication requirements * Permission scopes * Platform rate limits * Privacy requirements * Data retention requirements where applicable * Platform developer policies The system must not attempt to defeat or bypass restrictions imposed by an API or platform. --- # 4. Data Fields Where the relevant authorized API makes the information available, I would like the normalized output to support fields such as: * Platform * Country or locale * Item, product or post ID * Product or content title * Description or caption * Price * Currency * Seller or authorized account name * Product or media URL * Image or media reference * Availability or status * Publication timestamp * Engagement metrics where permitted * Canonical platform URL * API retrieval timestamp Not every platform will provide every field. The developer should map the available fields into one consistent output structure and clearly identify unsupported fields. --- # 5. Country and Locale Support The architecture should support multiple countries or marketplaces without duplicating the entire application. For example, where the relevant API supports them, Amazon marketplaces may include different countries and regions. MercadoLibre may also require different marketplace or country identifiers. Locale configuration should handle items such as: * Marketplace ID * Country * Currency * Language * API endpoint where applicable * Platform-specific settings If a certain platform requires separate API approval for different regions, please document this. --- # 6. Configuration-Driven Field Mapping Where practical, platform response mappings should be separated from the main business logic. For example: ```text Amazon Product ID: API response field Title: API response field Price: API response field Currency: API response field ``` If an API response schema changes, I would prefer to update mappings or configuration without rewriting large parts of the application. --- # 7. API Error Handling The system should clearly differentiate between different types of API problems. For example: ```text AMAZON API ERROR Status: 401 Reason: Authentication failure Action: Request rejected ``` ```text MERCADOLIBRE API ERROR Status: 429 Reason: API rate limit reached Action: Respect retry instructions and pause requests ``` ```text TIKTOK VALIDATION ERROR Status: 200 Mandatory field missing: post ID Action: Response saved for debugging ``` Errors should never be silently ignored. --- # 8. Mandatory Field Validation A successful API response does not automatically mean the returned record is valid. Each connector should define mandatory fields. If an API returns a successful response but important expected fields are unexpectedly missing, the system should: * Reject or quarantine that record * Log the issue * Identify which fields are missing * Save the raw API response for debugging * Continue processing where appropriate --- # 9. Raw Response Debugging When an authorized API returns a successful response but mandatory fields cannot be mapped correctly, the raw API response should be saved locally for troubleshooting. Example: ```text debug/ amazon/ response_error_001.json mercadolibre/ response_error_002.json ``` The log should identify: ```text Platform: Amazon API Status: Success Missing field: Price Raw response saved: debug/amazon/response_error_001.json Result: Record rejected Suspected cause: API schema or mapping issue ``` Sensitive information must not be written to logs unnecessarily. --- # 10. Offline Test Fixtures Offline testing is required. Please include saved, sanitized API response samples so mappings and parsers can be tested without making repeated live API requests. Example: ```text fixtures/ amazon/ product_standard.json mercadolibre/ product_standard.json vinted/ item_standard.json instagram/ media_standard.json facebook/ content_standard.json tiktok/ content_standard.json ``` Fixtures must not contain credentials, tokens or private personal information. --- # 11. Automated Testing Basic automated tests should be included. Tests should cover: * Loading saved API fixtures * Mapping platform-specific responses * Required field validation * Missing field handling * JSON export * CSV export * API error classification * Raw response debug saving * Locale configuration * Authentication configuration without exposing credentials Pytest or another suitable Python testing framework can be used. --- # 12. Rate Limit Handling The system must respect the official rate limits of each platform. Where applicable it should support: * Retry-after instructions * Exponential backoff * Request queues * Safe retry logic * Rate-limit logging The system must not attempt to evade rate limits by rotating accounts, IP addresses or otherwise circumventing platform controls. --- # 13. Authentication Credentials and access tokens must not be hard-coded. Use environment variables or another secure configuration approach. Example configuration values might include: ```text AMAZON_CLIENT_ID= AMAZON_CLIENT_SECRET= MERCADOLIBRE_CLIENT_ID= MERCADOLIBRE_CLIENT_SECRET= META_ACCESS_TOKEN= TIKTOK_CLIENT_KEY= TIKTOK_CLIENT_SECRET= OUTPUT_FORMAT=json LOG_LEVEL=INFO ``` The actual configuration will depend on the official APIs used. An .env.example file should be supplied without real credentials. --- # 14. Token Management Where OAuth is required, the developer should implement appropriate token handling. This may include: * OAuth authorization * Access token storage * Refresh tokens where supported * Token expiration handling * Authentication errors * Reauthorization instructions Credentials must be handled securely. --- # 15. Output Formats At minimum, the system should support: * JSON * CSV The exported data should use a normalized structure even though each platform's API returns different formats. --- # 16. Command-Line Operation I would like a simple method of running the integrations locally. For example: ```text python main.py --platform amazon python main.py --platform mercadolibre python main.py --platform tiktok ``` The exact command structure is flexible provided it is clearly documented and easy to use. --- # 17. Local Installation The complete project must be easy to install locally. Please provide: * requirements.txt or equivalent dependency configuration * .env.example * README.md * Full source code * Setup instructions Typical installation should be straightforward. Example: ```text python -m venv venv pip install -r requirements.txt python main.py --platform amazon ``` --- # 18. Logging Logs should include useful information such as: * Platform * Timestamp * API operation * Response status * Authentication error * Rate-limit error * Validation error * Missing fields * Retry action * Debug response location Sensitive credentials, tokens and unnecessary personal data must not appear in logs. --- # 19. Documentation A complete README is required. It should explain: * Installation * Python requirements * Environment variables * API credentials required * How authorization works * How to run each connector * Supported data fields * Unsupported data fields * Supported countries and marketplaces * Output formats * Testing * Offline fixtures * Logging * Common API errors * Troubleshooting * How field mappings can be updated * Any API approval requirements I want to be able to operate and maintain the application locally after delivery. --- # 20. Full Source Code Full Python source code must be delivered. The code should be: * Modular * Readable * Well organised * Documented * Maintainable * Reasonably commented No compiled-only application. --- # 21. Initial Bug-Fix Support I need a reasonable testing period after delivery. Please include post-delivery support for genuine implementation problems discovered during initial testing, including: * Authentication configuration issues * Incorrect API mappings * Code errors * Missing dependencies * Broken local setup * Incorrect output * Documentation errors * API response handling bugs Please state how many days of initial bug-fix support are included in your price. Future platform API changes after the project has been successfully accepted can be handled as separate maintenance work. --- # Important Compliance Requirement This project must remain compliant with the Terms of Service and developer policies of Amazon, MercadoLibre, Vinted, Meta, TikTok and any other service involved. Do not propose: * Unauthorized scraping * CAPTCHA bypass * Access-control bypass * Rate-limit circumvention * Account rotation to avoid platform restrictions * Collection of data that the account is not authorized to access * Collection of private or sensitive personal information without appropriate authorization * Reverse engineering prohibited by the relevant platform * Any workaround that violates a platform's Terms of Service If an official API does not provide a requested feature, please document the limitation and suggest only a compliant alternative. --- # Final Deliverables The final project should include: 1. Amazon authorized API connector 2. MercadoLibre authorized API connector 3. Vinted authorized integration where eligible and available 4. Instagram authorized API connector 5. Facebook authorized API connector 6. TikTok authorized API connector 7. Shared Python framework 8. Country and locale configuration 9. Normalized data model 10. JSON export 11. CSV export 12. API error handling 13. Rate-limit handling 14. Mandatory field validation 15. Raw JSON debug responses 16. Sanitized offline test fixtures 17. Automated tests 18. Secure environment configuration 19. Full README 20. Full Python source code 21. Initial bug-fix support If a platform cannot be integrated because the necessary official API access is unavailable to my account, clearly document this rather than implementing a prohibited workaround. --- # Skills Required Strong experience with several of the following is required: * Python * REST APIs * OAuth 2.0 * API Integration * JSON * CSV * Data normalization * Pytest * Error handling * Logging * Environment variables * API authentication * Rate-limit handling * Git * Amazon APIs * MercadoLibre API * Meta APIs * TikTok APIs * E-commerce integrations * Social media API integrations --- # Questions to Answer in Your Proposal Please answer the following rather than sending a generic proposal. 1. Which official or authorized API would you use for each of the six platforms? 2. What account permissions, developer approvals or credentials would I need for each platform? 3. Are there any requested platforms or data types that cannot currently be accessed through an official or otherwise authorized API? 4. How would you design one common data model across six different APIs? 5. How would you handle OAuth tokens and token refresh securely? 6. How would you handle official API rate limits and 429 responses? 7. Will sanitized offline JSON fixtures and automated tests be included? 8. Will the system save raw API responses for debugging when a response succeeds but mandatory fields cannot be mapped? 9. How many days of post-delivery bug-fix support will you include? 10. What is your realistic delivery time for the complete project? 11. Please briefly describe similar API integration work you have completed previously. # Fixed Price Please review the full scope before applying. What is your final fixed price in USD to complete this entire project? Please provide: 1. Your total fixed price 2. Your expected delivery time 3. Your included post-delivery bug-fix period 4. Any API access or paid third-party services that would need to be supplied separately by me Please do not submit a placeholder price and substantially change it later without a genuine change in scope.
Budget:
not specified
2 days ago
|
|||||
|
Draft English investor NDA for a Saudi legal-AI startup — enforceable locally and internationally
Applied
|
not specified | 2 days ago |
3
|
||
|
Description:
JUSTECH (Justech AI Company) is a Riyadh-headquartered legal-AI platform preparing for an investment round. We need a professionally drafted Non-Disclosure Agreement to be signed by prospective investors before they receive access to our data room. Who will sign it Individual angels, VCs, family offices, and corporate investors. They may be based in Saudi Arabia, the wider MENA region, or globally (US, UK, EU, Asia). The NDA must work for individuals and legal entities alike, with a single template we can send to anyone. What it protects The data room contains, among other things: company documentation (CR, articles, licences), pitch deck, detailed business plan, line-by-line financial forecasts and financial statements, financial study and planning, use of funds, product roadmap, technical solution overview and AI model architecture, competitor analysis, trademarks and IP, and customer/pipeline information. Scope of work A unilateral (one-way) investor NDA in English. Coverage of: broad definition of Confidential Information (including oral, visual, and data-room access); explicit protection of trade secrets, financial data, source code/model architecture, and IP; non-use beyond evaluation of the investment; non-circumvention; no reverse engineering; permitted disclosures to advisers on back-to-back terms; return/destruction on request; survival period (propose 3–5 years, indefinite for trade secrets); no obligation to invest; no licence granted; injunctive relief; remedies and indemnity. Governing law and dispute resolution: Saudi law with arbitration under the Saudi Center for Commercial Arbitration (SCCA), seat Riyadh. Please advise on the best structure so the agreement remains enforceable against foreign investors (e.g., New York Convention recognition), and flag where a separate governing-law option may be advisable for US/EU counterparties. Compliance with Saudi PDPL where personal data is included in the data room. Signature blocks for both natural persons and entities, suitable for e-signature. A one-page plain-language summary of key terms we can share with investors. Deliverables Word (.docx) files — English NDA, and the summary — plus a short notes memo explaining the drafting choices and any clauses we should consider negotiating. Timeline: 1–3 days from award. One round of revisions included. Requirements Qualified lawyer with demonstrable experience in cross-border commercial or investment agreements. Experience with Saudi or GCC law strongly preferred; native-level legal Arabic required for the Arabic version (or a vetted legal translator on your team). Please include in your proposal: your jurisdiction(s) of qualification, two examples of similar NDAs or investment documents you have drafted (redacted is fine), your fixed price, and your delivery date. Proposals that do not address the enforceability question in point 3 will not be shortlisted.
Budget:
not specified
2 days ago
|
|||||
|
Android PlayIntegrity(SafetyNet) Bypass (for HttpToolkit) [reverse-engineering]
Applied
|
$30 - $250
|
2 days ago |
-
|
||
|
I’m reverse-engineering an Android app that kills itself the moment it detects HttpToolKit (or any comparable MITM proxy) and fails Google PlayIntegrity(SafetyNet). My goal is to run the app with full functionality while keeping HttpToolKit active for traffic analysis.
Here’s what I need from you: • Identify the exact detection logic—whether it sits in SafetyNet attestation, certificate pinning, process checks, or hidden native libraries. • Neutralise or patch that logic so the app launches and operates normally while HttpToolKit captures traffic. A modified APK, Magisk module, Frida script, or another clean approach is acceptable as long as root access is not strictly required (root-based options are still fine if they’re the only reliable route). • Provide clear, step-by-step instructions so I can repeat the bypass on future versions of the same app. • Create an android image that I can run on emulator which I can use to do my traffic analysis. Acceptance criteria 1. App starts and stays stable with HttpToolKit running. 2. PlayIntegrity API doesn't detect anything wrong and reports success or is cleanly bypassed. 3. No visible loss of app functionality. Experience with Apktool, smali, Frida, Xposed, Magisk or similar Android reverse-engineering toolchains is essential. Let’s discuss the cleanest path and get this solved quickly. Skills: Java, Mobile App Development, Android, Software Architecture, Debugging, Penetration Testing, Reverse Engineering, Android SDK, Android Studio, Security Auditing
Fixed budget:
30 - 250 USD
2 days ago
|
|||||
|
Marketing Consultant
Applied
|
$35 - $50
/ hr
|
2 days ago |
3
|
||
|
I run a 1-on-1 online fitness coaching business and I'm looking for a Meta Ads consultant to guide me through running paid ads on Facebook and Instagram.
This is a weekly consulting engagement, not account management. We'll meet for one hour per week to review my account, work through targeting, creative, and budget decisions together, and you'll teach me how to read and act on the data myself. I'll retain final say on changes during this phase, and you'll have view-only access to my Ads Manager account so you can see what's happening and advise directly. My total monthly budget for ad spend and tools combined is $500 CAD, so this needs to work at a small scale. I'm not looking for someone whose experience is built on much larger ecommerce accounts. I need someone who understands how to make a lean budget produce qualified leads for a recurring service offer. Each client I close generates $560 CAD in gross revenue, which should give you a clear basis for reverse-engineering an acceptable cost per lead and cost per booked call. If this consulting phase produces results I can validate, lower cost per lead, more qualified calls booked, I intend to hire the right person on a full-time or ongoing basis to manage paid advertising directly. This is an explicit trial-to-hire path, not a one-off gig. **What I'm looking for:** - Direct experience running Meta Ads for lead generation or service/coaching-based businesses, not primarily ecommerce - Experience managing accounts with total monthly spend under $500, or a clear ability to explain how you'd approach that constraint - Comfort teaching and explaining your reasoning, not just executing silently - Available for a consistent weekly 1-hour call (Calgary time, Mountain Time zone) **To apply, please include:** 1. A specific example of a lead-gen or service-business account you've managed, including cost per lead or cost per booked call if you can share it 2. Your answer to this: how would you approach a Meta Ads account with a $500/month total budget for an offer generating $560 CAD per sale? 3. Your hourly rate (target range is $50-75 CAD/hr) **Budget:** $50-75 CAD/hour, roughly 4 hours per month to start To confirm you've read this listing in full, start your application with the word MARKETER. Applications without it will not be considered. Website: https://danieldebrocke.com/ Instagram: https://www.instagram.com/daniel_debrocke/
Hourly rate:
35 - 50 USD
2 days ago
|
|||||
|
Need Prototype/idea created into CAD file
Applied
|
$50
|
2 days ago |
3
|
||
|
I have an idea/prototype that I want created into a CAD file so I can 3D print my design. Person will need to help me improve design so that my idea/concept will work better. I have pictures of a prototype and I have some sketches.
Fixed budget:
50 USD
2 days ago
|
|||||
|
PS1 Twisted Metal 2 Mod: Dark Tooth Expansion
Applied
|
$30 - $250
|
2 days ago |
-
|
||
|
Project Title: PS1 MIPS Assembly / Ghidra Patch for Twisted Metal 2 Mod
Description: I am looking for an experienced PS1 reverse engineer and MIPS assembly programmer to fully implement the final boss "Dark Tooth" as two separate, playable characters on the vehicle selection screen in Twisted Metal 2 (US NTSC version, SCUS_943.06). The project builds on "edgbla's" core mod and "TechieSaru's" models. I will provide the modified SCUS_943.06 executable file to the chosen freelancer. Requirements (Strictly MIPS assembly patching, no custom external graphics needed): 1. Two Standalone Menu Slots: Expand the character select screen to create two separate slots using the game's existing portraits: - Slot 1: Dark Tooth Ice Cream Truck (Phase 1) - Slot 2: Dark Tooth Standalone Flying Head (Phase 2) 2. Boss Special Attack for the Truck: Patch the input handler so that triggering the special weapon fires BOTH the standard ice cream cones and launches the giant flaming clown head projectile, exactly like the original Phase 1 boss fight. 3. Boss Special Attack for the Flying Head: When playing as the standalone flying head, its special weapon must fire its authentic boss weapon (the massive homing pink plasma ball / projectile ID 0x15) along with the ice cream cones. 4. End-Level Cleanup Fix: Ensure that when a match ends, the game's memory cleanup does not despawn the head model or break the vehicle state during the victory screen. Budget: My absolute maximum budget for this task is 40 USD. It's a quick MIPS patch job since all 3D assets are already integrated. Please only bid if you have proven experience with the PS1 (R3000A) architecture. Skills: C Programming, Game Design, C++ Programming, Assembly, Game Development, Reverse Engineering, Game Programming
Fixed budget:
30 - 250 USD
2 days ago
|
|||||
|
Backlinks for Pilates teacher training
Applied
|
$25
|
2 days ago |
5
|
||
|
I want legitimate websites linking to the teacher-training page. small start sample
Potential sources: Pilates publications Barcelona expat websites fitness publications wellness blogs local Barcelona guides international Pilates organisations universities/continuing education sites where appropriate instructor directories local business associations event websites For example: “10 Pilates Teacher Training Courses in Barcelona” i did reverse engineering profile of my competitors and this is where they link to Tier 1: Core Search Engines & Global AggregatorsThese primary hubs route map data, build baseline domain authority, and capture direct consumer reviews.Google Business Profile: Register physical facilities via Google Business Profile Manager.Apple Business Connect: Submit local listing parameters via the Apple Business Connect Portal.Bing Places for Business: .Tier 2: Spanish National Business DirectoriesThese platforms carry high Domain Authority (DA) within Spain, providing authoritative .es and .com backlinks that search engine bots crawl to confirm localized existence.Páginas Amarillas España: Submit local studio profiles directly via Paginas Amarillas.QDQ España: Aegister individual studio profiles for free using the Cylex España Submission Portal.Indizalia: Create an operational listing on the nationwide Indizalia Directory.Axesor / Informa D&B: https://simplybepilates.com/pilates-teacher-training/
Fixed budget:
25 USD
2 days ago
|
|||||
|
Product Designer needed for Technical Outdoor Equipment (Heavy-Duty Haul Bag)
Applied
|
$10 - $50
/ hr
|
2 days ago |
4
|
||
|
Hi,
I am looking for an experienced technical bag/backpack designer to help me create a production-ready Tech Pack and digital Sewing Patterns (DXF/PDF) for a new heavy-duty hauling bag used in caving and outdoor exploration. Project Overview: I have conceptualized a new outdoor bag design. I will provide you with detailed sketches, dimensional requirements, and photo references of the functional features I want to implement (such as specific strap attachments and bottom reinforcements). What I need: 1. Translate my conceptual ideas, measurements, and functional requirements into a professional design. 2. Create the full Tech Pack and grading patterns (DXF/PDF). 3. The design must be optimized for cost-effective manufacturing (Target Ex-Works price is $15–$20 for a small batch of 100 pcs). Note: I am located in Switzerland. If you are located in the EU/Eastern Europe, I can also provide physical reference material/mockups if needed for your process. Please share your portfolio of technical bags or outdoor gear. Best regards, Simon
Hourly rate:
10 - 50 USD
2 days ago
|
|||||
|
Product Designer Needed for a Compact Atomizer
Applied
|
$150
|
2 days ago |
3
|
||
|
I'm looking for someone who can take the rough draft I have for my personal atomizer to the finish line. They'd need to produce a design I can share with a manufacturer which contains sections for all the specific parts of the device and a section with all of them together in one
I’m looking to build a dual-chamber travel atomizer for liquid products. Each chamber should be slightly thicker than the Juul shown in the reference image
Fixed budget:
150 USD
2 days ago
|
|||||
|
URGENT (24-48hr): Linux/Plesk/OVH Incident Containment Specialist Root-Level Compromise, Fixed Price
Applied
|
$500
|
2 days ago |
5
|
||
|
Overview
We are a digital marketing agency running a Plesk-based hosting server for client websites. We have confirmed a root-level compromise: a setuid-root backdoor binary was planted on the server, and attacker artefacts are present across the large majority of vhosts on the box. The backdoor was installed while our team was already remediating what we initially believed was a single-site WordPress infection. We are engaging separately on the full rebuild. This engagement is containment only. We need an experienced hand for the next 24 to 48 hours to stabilise the situation correctly, preserve evidence properly, and stop ongoing harm, so that we do not destroy our forensic position or make the rebuild harder through panicked action. This is a live incident. We need someone who has done this before, not someone learning on our server. Scope of work (fixed price, defined deliverables) Evidence preservation. Coordinate a full disk snapshot with the hosting provider before any other action. Copy system and vhost logs to external storage before rotation or attacker cleanup. Document a chain of custody we can hand to a forensics provider later. Stop outbound abuse. A bulk mailer is present in large numbers across the server and the IP is at risk of blocklisting. Halt outbound spam in a way that preserves evidence and, where possible, keeps legitimate client mail flowing. Report on what was queued and sent. Backdoor assessment (identification, not reverse engineering). Locate and document privilege escalation artefacts and persistence mechanisms present on the box. Identify scheduled tasks, services, modified binaries and accounts used for persistence. We need an inventory, not a malware analysis report. Secure administrative access. Remote shell access to the server is currently failing server-wide for reasons not yet explained and not configured by us. Establish a trustworthy administrative access path, working with the provider's rescue mode or console if required. Credential exposure inventory. Produce a prioritised list of every credential class exposed by this compromise (control panel, databases, mail, management tooling, API tokens) so we can rotate methodically from clean machines. Written handover. A concise report covering what you did, what you found, what remains dangerous, and your recommended sequence for the rebuild. This will be read by both technical and non-technical stakeholders. Required experience Demonstrable experience containing root-level Linux compromises, not just WordPress malware cleanups Strong Plesk administration, including working effectively when the panel and shell access are degraded Comfortable with provider rescue mode and out-of-band console access (OVH experience a plus) Postfix and mail abuse containment Sound judgement on evidence preservation. We need someone who understands why deleting the malware first is the wrong move Clear written English. Part of the deliverable is a report our management will read What we provide Root-level access to the server and control panel Hosting provider account access as required An existing indicators-of-compromise report for the originally affected site, plus the results of a server-wide signature sweep we have already run A direct line to a decision maker for the duration, including out of hours Terms Fixed price, with the six deliverables above as the acceptance criteria Start: immediately. We will review proposals as they arrive rather than waiting for a closing date Duration: 24 to 48 hours NDA required before any server or client detail is shared Please quote for the scope as written. If you believe the scope is wrong, tell us why in your proposal, we would rather hear that now than mid-engagement
Fixed budget:
500 USD
2 days ago
|
|||||
|
Porsche 986 Custom Body & Production CAD
Applied
|
$1,000
|
3 days ago |
1
|
||
|
Seeking an experienced automotive CAD/3D artist to create a 1:1 production-ready CAD model using a Porsche 986 chassis and Zanatta body design. The model will support physical fabrication of the car, including the buck, molds, and body panels, so accuracy and editability are essential. Milestone 1: verify 1:1 scale, axle centerlines, wheelbase, proposed stretch, track width, wheel/tire positions, windshield, doors, rockers, and key hard points. Milestone 2: fit the Zanatta body to the approved chassis and confirm wheel openings, tire clearances, overhangs, overall dimensions, and major features. Milestone 3: deliver clean, symmetrical, editable fabrication-ready geometry with native source files, STEP, STL, and OBJ. Please share relevant automotive CAD or reverse-engineering examples, software, timeline, and price.
Fixed budget:
1,000 USD
3 days ago
|
|||||
|
Protect DLL File from Reverse Engineer.
Applied
|
not specified | 3 days ago |
1
|
||
|
We’re looking for someone experienced in software protection and anti-reverse-engineering techniques to help secure our DLL against people who may attempt to analyze, reverse engineer, or tamper with our software.
Budget:
not specified
3 days ago
|
|||||
|
Automation Reverse Engineer
Applied
|
$30 - $60
/ hr
|
3 days ago |
5
|
||
|
I need someone who has years of experience with reverse engineering and automating processes. You should be familiar with dealing with the various platforms like recap and similar platforms. I don't want someone using solvers.
I want someone who can reverse things or find useful tricks. Something we can explore as a backup is Firefox automation. It would require a lightweight solution. More details in chat.
Hourly rate:
30 - 60 USD
3 days ago
|
|||||
Related freelance jobs queries: