<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:dc="http://purl.org/dc/elements/1.1/">
  <channel>
    <title>DEV Community: Soumyabrata Mukherjee</title>
    <description>The latest articles on DEV Community by Soumyabrata Mukherjee (@apparely).</description>
    <link>https://dev.to/apparely</link>
    <image>
      <url>https://media2.dev.to/dynamic/image/width=90,height=90,fit=cover,gravity=auto,format=auto/https:%2F%2Fdev-to-uploads.s3.us-east-2.amazonaws.com%2Fuploads%2Fuser%2Fprofile_image%2F4162922%2F79cd6899-fb0f-44dc-9e9b-b874943e6e59.png</url>
      <title>DEV Community: Soumyabrata Mukherjee</title>
      <link>https://dev.to/apparely</link>
    </image>
    <atom:link rel="self" type="application/rss+xml" href="https://dev.to/feed/apparely"/>
    <language>en</language>
    <item>
      <title>Built TrailQR Raksha that forces people to go out and check QR before paying</title>
      <dc:creator>Soumyabrata Mukherjee</dc:creator>
      <pubDate>Fri, 09 Oct 2026 21:27:17 +0000</pubDate>
      <link>https://dev.to/apparely/built-trailqr-raksha-that-forces-people-to-go-out-and-check-qr-before-paying-25h3</link>
      <guid>https://dev.to/apparely/built-trailqr-raksha-that-forces-people-to-go-out-and-check-qr-before-paying-25h3</guid>
      <description>&lt;p&gt;&lt;em&gt;This is a submission for the &lt;a href="https://dev.to/challenges/hacktoberfest-week1-2026-10-05"&gt;Hacktoberfest Open-Source AI Challenge Week 1: Touch Grass&lt;/a&gt;&lt;/em&gt;&lt;/p&gt;

&lt;h2&gt;
  
  
  What I Built
&lt;/h2&gt;

&lt;p&gt;Almost the entire India runs on QR codes. From small shops to big ones, all have got one, attached somewhere or other. But just scanning the QR code was never enough. For example: A 2D QR matrix is human-unreadable. Unlike a hyperlink, victims cannot inspect the payee address, domain, or pre-filled transaction amounts before acting. Me and my friends built something useful.&lt;/p&gt;

&lt;p&gt;&lt;a href="https://media2.dev.to/dynamic/image/width=800%2Cheight=%2Cfit=scale-down%2Cgravity=auto%2Cformat=auto/https%3A%2F%2Fdev-to-uploads.s3.us-east-2.amazonaws.com%2Fuploads%2Farticles%2Fquip40l3fe1eu9riptst.png" class="article-body-image-wrapper"&gt;&lt;img src="https://media2.dev.to/dynamic/image/width=800%2Cheight=%2Cfit=scale-down%2Cgravity=auto%2Cformat=auto/https%3A%2F%2Fdev-to-uploads.s3.us-east-2.amazonaws.com%2Fuploads%2Farticles%2Fquip40l3fe1eu9riptst.png" alt=" " width="220" height="220"&gt;&lt;/a&gt;&lt;/p&gt;

&lt;p&gt;We created TrailQR Raksha that is a privacy-first, offline-capable QR security guard built for street environments across West Bengal. Deterministic rules decide. Google Gemma 4 explains in English and vernacular Bengali. Zero sensitive data leaves your phone unsanitised. And Snowflake CoCo aggregates neighborhood threat patterns. &lt;/p&gt;

&lt;p&gt;Point your phone at a QR code and it checks it for you:&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;
&lt;strong&gt;Simple rules decide&lt;/strong&gt; whether a QR looks safe or suspicious.&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;Google Gemma 4 explains why&lt;/strong&gt;, in English and in Bengali.&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;Your private details stay on your phone.&lt;/strong&gt; Anything sensitive is cleaned before it goes anywhere.&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;Snowflake CoCo&lt;/strong&gt; spots scam patterns across neighbourhoods.&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;And since a QR code only exists out in the real world, you have to go outside, find one and scan it. No sitting in your room with this one :))&lt;/p&gt;

&lt;h2&gt;
  
  
  Demo
&lt;/h2&gt;

&lt;p&gt;Honestly, you're lucky my friends deployed this. Left to me, I'd have told you to deploy it yourself. I'm a DIVA, after all. 💅&lt;/p&gt;

&lt;p&gt;&lt;a href="https://media2.dev.to/dynamic/image/width=800%2Cheight=%2Cfit=scale-down%2Cgravity=auto%2Cformat=auto/https%3A%2F%2Fdev-to-uploads.s3.us-east-2.amazonaws.com%2Fuploads%2Farticles%2F6zixl9m5vd8fut2ucbn7.png" class="article-body-image-wrapper"&gt;&lt;img src="https://media2.dev.to/dynamic/image/width=800%2Cheight=%2Cfit=scale-down%2Cgravity=auto%2Cformat=auto/https%3A%2F%2Fdev-to-uploads.s3.us-east-2.amazonaws.com%2Fuploads%2Farticles%2F6zixl9m5vd8fut2ucbn7.png" alt=" " width="400" height="268"&gt;&lt;/a&gt;&lt;/p&gt;

&lt;p&gt;Just kidding! It's live here: &lt;a href="https://qr-raksha.vercel.app" rel="noopener noreferrer"&gt;qr-raksha.vercel.app&lt;/a&gt;. Try it yourself instead of taking our word for it.&lt;/p&gt;

&lt;h2&gt;
  
  
  Code
&lt;/h2&gt;


&lt;div class="ltag-github-readme-tag"&gt;
  &lt;div class="readme-overview"&gt;
    &lt;h2&gt;
      &lt;img src="https://assets.dev.to/assets/github-logo-5a155e1f9a670af7944dd5e12375bc76ed542ea80224905ecaf878b9157cdefc.svg" alt="GitHub logo"&gt;
      &lt;a href="https://github.com/debangshuuii" rel="noopener noreferrer"&gt;
        debangshuuii
      &lt;/a&gt; / &lt;a href="https://github.com/debangshuuii/QR-RAKSHA" rel="noopener noreferrer"&gt;
        QR-RAKSHA
      &lt;/a&gt;
    &lt;/h2&gt;
    &lt;h3&gt;
      
    &lt;/h3&gt;
  &lt;/div&gt;
  &lt;div class="ltag-github-body"&gt;
    
&lt;div id="readme" class="md"&gt;&lt;div class="markdown-heading"&gt;
&lt;h1 class="heading-element"&gt;TrailQR Raksha — Check a QR Before You Pay&lt;/h1&gt;
&lt;/div&gt;
&lt;p&gt;&lt;a href="https://opensource.org/licenses/MIT" rel="nofollow noopener noreferrer"&gt;&lt;img src="https://camo.githubusercontent.com/fdf2982b9f5d7489dcf44570e714e3a15fce6253e0cc6b5aa61a075aac2ff71b/68747470733a2f2f696d672e736869656c64732e696f2f62616467652f4c6963656e73652d4d49542d79656c6c6f772e737667" alt="License: MIT"&gt;&lt;/a&gt;
&lt;a href="https://github.com/debangshuuii/QR-RAKSHA#tests" rel="noopener noreferrer"&gt;&lt;img src="https://camo.githubusercontent.com/297d96bcafbb41774615188a5b5e36b3a4bbfbe87c58ff1d2aa556e3988f4eb0/68747470733a2f2f696d672e736869656c64732e696f2f62616467652f74657374732d382532307061737365642d627269676874677265656e2e737667" alt="Node.js Tests"&gt;&lt;/a&gt;
&lt;a href="https://github.com/debangshuuii/QR-RAKSHA#tracks-entered" rel="noopener noreferrer"&gt;&lt;img src="https://camo.githubusercontent.com/0ca9f838ca58e404dac0e1e82d7c476cda54f354063420a0b1c6f537e84cb1ca/68747470733a2f2f696d672e736869656c64732e696f2f62616467652f4f574153502d4149253230696e253230437962657273656375726974792d7265642e737667" alt="Track"&gt;&lt;/a&gt;
&lt;a href="https://github.com/debangshuuii/QR-RAKSHA#tracks-entered" rel="noopener noreferrer"&gt;&lt;img src="https://camo.githubusercontent.com/c0ee55a0ab791e24e7341298f6ea7681a8b5fdaa7e445a1d0064c180efd74905/68747470733a2f2f696d672e736869656c64732e696f2f62616467652f476f6f676c652d47656d6d61253230342d626c75652e737667" alt="Track"&gt;&lt;/a&gt;
&lt;a href="https://github.com/debangshuuii/QR-RAKSHA#tracks-entered" rel="noopener noreferrer"&gt;&lt;img src="https://camo.githubusercontent.com/40f83d5722fc728754bd350110c01252b8948d1830b7bf60e8a74505aed20870/68747470733a2f2f696d672e736869656c64732e696f2f62616467652f536e6f77666c616b652d436f436f2532302532362532304d61726b6574706c6163652d6c69676874626c75652e737667" alt="Track"&gt;&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;Kolkata — and India — runs on QR codes. Tea stalls, taxis, parking, donations, ticket counters: you scan, you pay, you move on. One sticker pasted over a shop's real QR and your payment goes to a scammer, or a "KYC verify" QR takes you to a credential phishing site. You cannot see where a QR goes until it is too late.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;TrailQR Raksha&lt;/strong&gt; is a privacy-first, offline-capable QR security guard built for street environments across West Bengal.&lt;/p&gt;

&lt;div class="markdown-heading"&gt;
&lt;h2 class="heading-element"&gt;📑 Table of Contents&lt;/h2&gt;
&lt;/div&gt;
&lt;ol&gt;
&lt;li&gt;
&lt;a href="https://github.com/debangshuuii/QR-RAKSHA#section-1-about-the-project" rel="noopener noreferrer"&gt;Section 1: About the Project&lt;/a&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://github.com/debangshuuii/QR-RAKSHA#the-problem" rel="noopener noreferrer"&gt;The Problem&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://github.com/debangshuuii/QR-RAKSHA#how-it-works" rel="noopener noreferrer"&gt;How It Works&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://github.com/debangshuuii/QR-RAKSHA#tracks-entered" rel="noopener noreferrer"&gt;Tracks Entered&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://github.com/debangshuuii/QR-RAKSHA#how-to-run" rel="noopener noreferrer"&gt;How to Run&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://github.com/debangshuuii/QR-RAKSHA#tests" rel="noopener noreferrer"&gt;Automated Tests&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://github.com/debangshuuii/QR-RAKSHA#technologies" rel="noopener noreferrer"&gt;Technology Stack&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://github.com/debangshuuii/QR-RAKSHA#limitations" rel="noopener noreferrer"&gt;Limitations&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;&lt;a href="https://github.com/debangshuuii/QR-RAKSHA#section-2-team-information" rel="noopener noreferrer"&gt;Section 2: Team Information&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://github.com/debangshuuii/QR-RAKSHA#section-3-open-source-license--disclosures" rel="noopener noreferrer"&gt;Section 3: Open-Source License &amp;amp; Disclosures&lt;/a&gt;&lt;/li&gt;
&lt;/ol&gt;
&lt;div class="markdown-heading"&gt;
&lt;h3 class="heading-element"&gt;📚 Judging &amp;amp; Hackathon Documentation&lt;/h3&gt;
&lt;/div&gt;
&lt;ul&gt;
&lt;li&gt;🎯 &lt;strong&gt;&lt;a href="https://github.com/debangshuuii/QR-RAKSHA/JUDGING_PLAYBOOK.md" rel="noopener noreferrer"&gt;Live Judging Playbook&lt;/a&gt;:&lt;/strong&gt; 3-minute pitch, live demo steps, and track defense answers.&lt;/li&gt;
&lt;li&gt;📝 &lt;strong&gt;&lt;a href="https://github.com/debangshuuii/QR-RAKSHA/SUBMISSION.md" rel="noopener noreferrer"&gt;Official Submission Form&lt;/a&gt;:&lt;/strong&gt; Ready-to-submit form with all 10…&lt;/li&gt;
&lt;/ul&gt;&lt;/div&gt;
  &lt;/div&gt;
  &lt;div class="gh-btn-container"&gt;&lt;a class="gh-btn" href="https://github.com/debangshuuii/QR-RAKSHA" rel="noopener noreferrer"&gt;View on GitHub&lt;/a&gt;&lt;/div&gt;
&lt;/div&gt;


&lt;h2&gt;
  
  
  How I Built It
&lt;/h2&gt;

&lt;ul&gt;
&lt;li&gt;
&lt;strong&gt;Frontend:&lt;/strong&gt; plain HTML, CSS and JavaScript, no frameworks&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;Safety checks:&lt;/strong&gt; simple rules that run on your device (&lt;code&gt;js/rules.js&lt;/code&gt;)&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;AI:&lt;/strong&gt; Google Gemma 4, through the Gemini API, with an offline Ollama backup&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;Data:&lt;/strong&gt; Snowflake and Snowflake CoCo&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;Agent skill:&lt;/strong&gt; published as an open-standard Agent Skill (&lt;code&gt;skills/qr-audit/SKILL.md&lt;/code&gt;)&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;You can add the skill to your own agent with one command:&lt;/p&gt;

&lt;p&gt;&lt;code&gt;npx skills add https://github.com/debangshuuii/QR-RAKSHA/tree/main/skills/qr-audit&lt;br&gt;
&lt;/code&gt;&lt;/p&gt;

&lt;h2&gt;
  
  
  Why Does Open Innovation Matter?
&lt;/h2&gt;

&lt;p&gt;Okay, DIVA hat off for a minute. 😌&lt;/p&gt;

&lt;p&gt;QR Raksha is made for someone standing at a stall in a lane with bad network, not someone sitting on fast Wi-Fi in a café. Open models made that possible:&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;
&lt;strong&gt;It works offline.&lt;/strong&gt; Gemma 4 is open, so we could run it locally with Ollama. If the network drops, the guard stays on.&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;Your data stays yours.&lt;/strong&gt; We control exactly what leaves the phone, instead of just trusting someone else's server.&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;It speaks Bengali.&lt;/strong&gt; A warning nobody can read is useless. Plain Bengali explanations make it useful for shopkeepers, not just developers.&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;The rules are open too. Anyone can read them, question them and add new scam patterns. For a security tool, "read the code" beats "trust us".&lt;/p&gt;

&lt;p&gt;One more thing: &lt;strong&gt;the AI never decides if a QR is safe. The rules do. Gemma only explains.&lt;/strong&gt; We didn't want a chatbot confidently saying "looks fine!" about a scam.&lt;/p&gt;

&lt;h2&gt;
  
  
  Prize Categories
&lt;/h2&gt;

&lt;ul&gt;
&lt;li&gt;
&lt;strong&gt;Best Use of Gemma:&lt;/strong&gt; Gemma 4 explains every scan in English and Bengali. It runs through the Gemini API, with an offline Ollama backup so it still works when the network doesn't.&lt;/li&gt;
&lt;li&gt;
&lt;strong&gt;Snowflake:&lt;/strong&gt; CoCo for neighbourhood scam patterns, plus a published Agent Skill&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;
  
  
  Team
&lt;/h2&gt;

&lt;p&gt;Built with my friends, who actually believe in deploying things:&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;&lt;a href="https://dev.to/apparely"&gt;@apparely&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://dev.to/sudiptasanki"&gt;@sudiptasanki&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;Now go touch some grass, and &lt;strong&gt;scan responsibly&lt;/strong&gt;. &lt;/p&gt;

</description>
      <category>devchallenge</category>
      <category>hf26challenge</category>
    </item>
    <item>
      <title>Built an AI Review Agent for my DevFriend Like CodeRabbit</title>
      <dc:creator>Soumyabrata Mukherjee</dc:creator>
      <pubDate>Mon, 05 Oct 2026 05:52:23 +0000</pubDate>
      <link>https://dev.to/apparely/built-an-ai-review-agent-for-my-devfriend-like-coderabbit-5gfg</link>
      <guid>https://dev.to/apparely/built-an-ai-review-agent-for-my-devfriend-like-coderabbit-5gfg</guid>
      <description>&lt;p&gt;&lt;em&gt;This is a submission for the [Hacktoberfest Weekend Challenge: Build for a Friend]. Lets see how Kiro IDE was used to streamline the entire thing. (&lt;a href="https://dev.to/challenges/hacktoberfest-weekend-2026-10-01"&gt;https://dev.to/challenges/hacktoberfest-weekend-2026-10-01&lt;/a&gt;)&lt;/em&gt;&lt;/p&gt;

&lt;p&gt;P.S: Written by one's own experience &lt;/p&gt;

&lt;h2&gt;
  
  
  What I Built
&lt;/h2&gt;

&lt;p&gt;Honestly, let me give you a backstory. I love building stuff. I love practicing building in public. When I was there coding with my other friends who are also fellow developers, I saw that we had a hard time fixing all the issues that included only screenshots and nothing else. We didn't know what was root cause triggering that and how such could be prevented in long run. So I immediately thought of a plan: adding CodeRabbit and all. However it didn't solve the problem. &lt;/p&gt;

&lt;p&gt;Neither for me neither for them. The developers had to know how to write a PR, then coderabbit reviews it. For most of cases, developers didn't care. They simply ran the software, found a bug and hitted on its issues. Its not that the bug is from their side, but it can come from the overall code too. They didn't know where exactly to pinpoint. &lt;/p&gt;

&lt;p&gt;Naturally maintaining college and OSS is a hard stuff. My friends can't look at screenshots from every issue and debug whether its a local or a global issue. We needed an AI agent that could tell us where exactly it went wrong.&lt;/p&gt;

&lt;p&gt;That why on Kiro Challenge and MLH x Kalyani Hackathon, I built PatchBridge. Its remarkably easy to use. Comment /patchbridge under an issue, Gemma 4 is multimodal anyways - understands the image, starts a session, streamlines its thoughts, calls GITHUB MCP tools for reading and grepping the repository thoroughly, comes with a solution and then raises a PR. After that other AI review agents like CodeRabbit and greptile can start working on it. &lt;/p&gt;

&lt;h2&gt;
  
  
  Demo
&lt;/h2&gt;

&lt;p&gt;I didn't deploy it somewhere, honestly because I want people to learn how to self-deploy. I don't want them to just see repository and click "Yeah here's link, let me get it!". I want them to participate and understand no one is holding their hands by giving them a readymade solution. &lt;br&gt;
Here's code however: &lt;a href="https://github.com/Soumyabrataop/PatchBridge" rel="noopener noreferrer"&gt;https://github.com/Soumyabrataop/PatchBridge&lt;/a&gt;&lt;/p&gt;

&lt;h2&gt;
  
  
  Code
&lt;/h2&gt;

&lt;p&gt;&lt;code&gt;https://github.com/Soumyabrataop/PatchBridge&lt;/code&gt;&lt;/p&gt;

&lt;h2&gt;
  
  
  How I Built It
&lt;/h2&gt;

&lt;p&gt;Don't get me wrong but I coded this using both my personal understanding and using Kiro. &lt;/p&gt;

&lt;p&gt;I never thought I could complete this just alone. Hence, I decided to start this with Antigravity. However it isn't like "Code this for me. Here's the plan" but like "Look at this particular screenshot. It comes from this particular styling issue. Please create a patch that can fix the issue." - More engagement and understanding, not just driving on autopilot. Antigravity barely did anything. &lt;/p&gt;

&lt;p&gt;I used a much better IDE named as Kiro, from Amazon after learning about it. It comes with specs, hooks and much more.&lt;/p&gt;

&lt;h2&gt;
  
  
  Why Does Open Innovation Matter?
&lt;/h2&gt;

&lt;p&gt;A closed API is like a closed room. Dark and mysterious, we don't know what's going inside. Even reports published is a half story - we never know what's inside them. Open Innovation always stood out whether its Open Hermes, or Open Devin or a Open Copilot. Not just developers building products that are open-source versions of the existing solutions but something's that the existing solutions can take inspiration from! Hey don't think only the big inspires the small, the small does it too.&lt;/p&gt;

&lt;p&gt;Adios,&lt;br&gt;
Soumyabrata Mukherjee&lt;/p&gt;

</description>
      <category>devchallenge</category>
      <category>weekendchallenge</category>
      <category>hf26challenge</category>
      <category>kiro</category>
    </item>
  </channel>
</rss>
