Internal Audit (campus hire)
Major short-video & live-streaming platform
- Live-streaming guild allowlist audit — value-traced the mentor–apprentice allowlist back to its original intent and showed it had been weaponised as a fee-arbitrage construct (a single 'mentor' fronting 100+ apprentices); closed two high-risk allowlists across access / approval / removal stages and drove a rewrite of onboarding & offboarding rules, plugging material fund leakage.
- Game-streaming content-center audit — built a multi-dimensional creator-value model (ROI / ACU / ARPPU / paying-rate) that replaced subjective 'creator-potential' arguments, separating genuinely-premium creators from inflated ones and surfacing a substantial book of low-yield signings.
- Minor-user protection audit — paired an external-signal radar with internal red-team product attacks; entering through 'accounts producing revenue without ever going live', surfaced a hidden guest-cohost gifting flow reaching a large population of minor accounts, then reproduced and patched timezone-bypass curfew, guest-cohost bypass, and AIGC unsafe-content induction at the product level.
- Growth-incentive audit — end-to-end attack-surface mapping over the live campaign portfolio found 100+ campaign types able to bypass risk control via allowlist exemption; combining session-duration, modified-client fingerprints, and per-user ROI attributed large-scale fraudulent payouts, and UID-to-payout clustering surfaced withdrawal exposure and merchant–black-market collusion.