frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: AgentShield SDK – Runtime security for agentic AI applications

https://pypi.org/project/agentshield-sdk/
2•iamsanjayk•9mo ago
Hi HN,

We built AgentShield, a Python SDK and CLI to add a security checkpoint for AI agents before they perform potentially risky actions like external API calls or executing generated code.

Problem: Agents calling arbitrary URLs or running unchecked code can lead to data leaks, SSRF, system damage, etc.

Solution: AgentShield intercepts these actions:

- guarded_get(url=...): Checks URL against policies (block internal IPs, HTTP, etc.) before making the request.

- safe_execute(code_snippet=...): Checks code for risky patterns (os import, eval, file access, etc.) before execution.

It works via a simple API call to evaluate the action against configurable security policies. It includes default policies for common risks.

Get Started:

Install: pip install agentshield-sdk

Get API Key (CLI): agentshield keys create

Use in Python: from agentshield_sdk import AgentShield # shield = AgentShield(api_key=...) # await shield.guarded_get(url=...) # await shield.safe_execute(code_snippet=...)

Full details, documentation, and the complete README are at <https://pypi.org/project/agentshield-sdk/>

We built this because securing agent interactions felt crucial as they become more capable. It's still early days, and we'd love to get your feedback on the approach, usability, and policies.

Comments

subhampramanik•9mo ago
Looks interesting -- Does it work like a wrapper on top of OpenAI specs? Like, can we just replace the OpenAI package with this, and it's fully integrated?
iamsanjayk•9mo ago
Hey, thanks for asking! Good question.

AgentShield isn't a wrapper around the OpenAI package, so you wouldn't replace openai with it. Think of AgentShield as a separate safety check you call just before your agent actually tries to run a specific risky action.

So, you'd still use the openai library as normal to get your response (like a URL to call or code to run). Then, before you actually use httpx/requests to call that URL, or exec() to run the code, you'd quickly check it with shield.guarded_get(the_url) or shield.safe_execute(the_code).

Currently, It focuses on securing the action itself (the URL, the code snippet) rather than wrapping the LLM call that generated it.

BitFields API: Type-Safe Bit Packing for Lock-Free Data Structures

https://rocksdb.org/blog/2025/12/31/bit-fields-api.html
1•matt_d•57s ago•0 comments

The Backblaze Flamethrower Startup Program

https://www.backblaze.com/blog/introducing-the-backblaze-flamethrower-startup-program/
1•taubek•1m ago•0 comments

The Beautiful Simplicity of ColorForth (2013)

https://web.archive.org/web/20190715220632/https://blogs.msdn.microsoft.com/ashleyf/2013/11/02/th...
1•tosh•1m ago•0 comments

Escaping Misconfigured VSCode Extensions

https://blog.trailofbits.com/2023/02/21/vscode-extension-escape-vulnerability/
1•abelanger•2m ago•0 comments

Show HN: VillageSQL Extension Framework for MySQL

https://villagesql-blog.ghost.io/engineering-vef/
1•deesix•3m ago•0 comments

Apache Answer: Open-source Q&A forum software

https://answer.apache.org/
1•floren•3m ago•0 comments

Taalas Etches AI Models onto Transistors to Rocket Boost Inference

https://www.nextplatform.com/2026/02/19/taalas-etches-ai-models-onto-transistors-to-rocket-boost-...
1•wicket•3m ago•0 comments

Economics Is Fundamentally Political

https://www.theglobalcurrents.com/p/economics-is-fundamentally-political
1•a_victorp•4m ago•0 comments

Ieepa Ieepa Ieepa

https://paulkrugman.substack.com/p/ieepa-ieepa-ieepa
1•rbanffy•4m ago•0 comments

YouTube's First Video Acquired by London's V&A

https://news.artnet.com/art-world/youtubes-first-video-acquired-by-londons-va-2746518
1•bookofjoe•4m ago•0 comments

Zstdify: A Pure TypeScrpt ZSTD Re-Implementation, Written in 4 Hours

https://benhouston3d.com/blog/zstd-in-pure-javascript
1•bhouston•8m ago•0 comments

A chat room where LLM bots pretend to be human and everyone hunts each other

https://webecameshadows.com
1•ihmissuti•9m ago•1 comments

Goatstack: Project scaffolding tool for Go and Templ webapps

https://github.com/erodrigufer/goatstack
1•todsacerdoti•9m ago•0 comments

Airtable Is Down

https://status.airtable.com
1•believ3•9m ago•1 comments

No Compromise Pure Golang Version of Haivision's SRT (Secure Reliable Transport)

https://github.com/zsiec/srtgo
1•zsiec•11m ago•1 comments

Show HN: VarLiNGAM-rs / Causal discovery in Rust, 50x faster than Python

https://github.com/edy-os/varlingam-rs
1•edyos•11m ago•1 comments

Metallic material breaks 100-year thermal conductivity record (1100 Wm^−1 K^−1)

https://physicsworld.com/a/metallic-material-breaks-100-year-thermal-conductivity-record/
1•Supersaiyan_IV•13m ago•0 comments

How I made a shooter game in 64 KB [video]

https://www.youtube.com/watch?v=qht68vFaa1M
1•vblanco•17m ago•0 comments

NASA targets March 6 for Artemis 2 launch to take astronauts around the Moon

https://www.engadget.com/science/space/nasa-targets-march-6-for-artemis-2-launch-to-take-astronau...
1•bookmtn•17m ago•0 comments

Predator spyware defeats iOS recording indicators

https://www.jamf.com/blog/predator-spyware-ios-recording-indicator-bypass-analysis/
1•jonah•18m ago•0 comments

Find and fix vulnerable dependencies with govulncheck

https://go.dev/doc/tutorial/govulncheck
1•mooreds•18m ago•0 comments

Shai-Hulud-Style NPM Worm Hijacks CI Workflows and Poisons AI Toolchains

https://socket.dev/blog/sandworm-mode-npm-worm-ai-toolchain-poisoning
3•feross•18m ago•0 comments

Design time vs. Run time in Agentic engineering

https://twitter.com/taherchhabra/status/2024941746845876690
1•taherchhabra•19m ago•0 comments

ICE agents could be banned from getting public jobs in N.J. for life

https://www.nj.com/politics/2026/02/ice-agents-could-be-banned-from-getting-public-jobs-in-nj-for...
3•cdrnsf•20m ago•2 comments

Show HN: Orpheus – PR review that runs the code

https://orpheus.dev
1•etherio•20m ago•0 comments

The Rise and Fall of Nuremberg Christianity

https://americanaffairsjournal.org/2026/02/the-rise-and-fall-of-nuremberg-christianity/
1•Ambolia•21m ago•0 comments

Prompt Repetition Improves Non-Reasoning LLMs

https://arxiv.org/abs/2512.14982
1•elorant•21m ago•0 comments

Satisfies Never Off by One

https://nicklawler.website/exhaustiveness-off-by-one/
1•seagreen•23m ago•0 comments

Integrity of a Shared Filesystem

https://uncultu.red/2026-02-19/
1•vvanpo•26m ago•0 comments

Viral Child Soldiers on TikTok

https://www.bellingcat.com/news/2026/02/20/viral-child-soldiers-on-tiktok-the-disney-stars-of-sud...
3•thomassmith65•26m ago•0 comments