frontpage.
newsnewestaskshowjobs

Open Source @Github

fp.

Open in hackernews

Show HN: AgentShield SDK – Runtime security for agentic AI applications

https://pypi.org/project/agentshield-sdk/
2•iamsanjayk•1y ago
Hi HN,

We built AgentShield, a Python SDK and CLI to add a security checkpoint for AI agents before they perform potentially risky actions like external API calls or executing generated code.

Problem: Agents calling arbitrary URLs or running unchecked code can lead to data leaks, SSRF, system damage, etc.

Solution: AgentShield intercepts these actions:

- guarded_get(url=...): Checks URL against policies (block internal IPs, HTTP, etc.) before making the request.

- safe_execute(code_snippet=...): Checks code for risky patterns (os import, eval, file access, etc.) before execution.

It works via a simple API call to evaluate the action against configurable security policies. It includes default policies for common risks.

Get Started:

Install: pip install agentshield-sdk

Get API Key (CLI): agentshield keys create

Use in Python: from agentshield_sdk import AgentShield # shield = AgentShield(api_key=...) # await shield.guarded_get(url=...) # await shield.safe_execute(code_snippet=...)

Full details, documentation, and the complete README are at <https://pypi.org/project/agentshield-sdk/>

We built this because securing agent interactions felt crucial as they become more capable. It's still early days, and we'd love to get your feedback on the approach, usability, and policies.

Comments

subhampramanik•1y ago
Looks interesting -- Does it work like a wrapper on top of OpenAI specs? Like, can we just replace the OpenAI package with this, and it's fully integrated?
iamsanjayk•1y ago
Hey, thanks for asking! Good question.

AgentShield isn't a wrapper around the OpenAI package, so you wouldn't replace openai with it. Think of AgentShield as a separate safety check you call just before your agent actually tries to run a specific risky action.

So, you'd still use the openai library as normal to get your response (like a URL to call or code to run). Then, before you actually use httpx/requests to call that URL, or exec() to run the code, you'd quickly check it with shield.guarded_get(the_url) or shield.safe_execute(the_code).

Currently, It focuses on securing the action itself (the URL, the code snippet) rather than wrapping the LLM call that generated it.

Application compatibility layers are there for the customer (2010)

https://devblogs.microsoft.com/oldnewthing/20100311-00/?p=14643/
1•crispinh•2m ago•0 comments

A Categorical Analysis of LLMs and the Symbol Grounding Problem (2025)

https://arxiv.org/abs/2512.09117
2•rockwindmemento•3m ago•0 comments

Can we prove LLMs are not conscious?

https://machines.tivra.com/human
1•DesaiAshu•4m ago•0 comments

Make717, Lancaster PA's First Makerspace

https://www.make717.org/
1•linuxkernal•4m ago•0 comments

Musk, Jensen Huang, Lisa Su Awarded National Medal of Science

https://www.foxnews.com/politics/first-fox-elon-musk-heads-back-white-house-trump-marks-prestigio...
2•osnium123•16m ago•0 comments

Practical use cases for OpenAI's Decisions API

https://vercel.com/i/openai-decisions-api-use-cases
1•flashbrew•16m ago•0 comments

Humanity's Last Problem

https://benhylak.substack.com/p/humanitys-last-problem
2•namanbhulawat•18m ago•0 comments

Show HN: A satirical yet useful employee survey app for tolerable workplaces

https://tolerableworkplace.com/
1•joewhale•20m ago•0 comments

Letterman – a roguelike Scrabble x balatro game

https://letterman.lol/
1•idiomltd•22m ago•0 comments

Dosbox-x OS-free version because of California age verification laws

https://github.com/joncampbell123/dosbox-x/issues/6337
1•bananaboy•28m ago•1 comments

Show HN: Rhyven – A marketplace for agents

https://rhyvenai.com
1•calebrhyven•28m ago•0 comments

The AI Pascal's Wager

https://ploum.net/2026-10-01-pascal_wager.html
1•teichmann•35m ago•0 comments

What Every Airline Can Learn About Proactively Shaping Revenue

https://papers.ssrn.com/sol3/papers.cfm?abstract_id=7152080
1•mooreds•37m ago•0 comments

April: APL as a DSL in Common Lisp

https://github.com/phantomics/april
2•so-cal-schemer•37m ago•1 comments

How the Billions from the Opioid Settlement Are Being Spent

https://www.newyorker.com/news/the-lede/how-the-billions-from-the-opioid-settlement-are-being-spent
2•littlexsparkee•38m ago•1 comments

Don't let a misunderstanding distract you from your goals

https://herbertlui.net/dont-let-a-misunderstanding-distract-you-from-your-goals/
1•herbertl•41m ago•0 comments

Regularized RSI

https://regularized-rsi.com/
1•gregorymichael•42m ago•0 comments

SERV – The SErial RISC-V CPU

https://github.com/olofk/serv
1•kristianpaul•44m ago•0 comments

Tensorlake NPM package and repo compromised

https://github.com/tensorlakeai/tensorlake/issues/1014
3•varunsharma07•48m ago•0 comments

A DuckDB Database with No Data in It

https://duckdb.org/2026/10/07/view-only-mode
1•eigenBasis•53m ago•0 comments

Retrofitting language models to operate over bytes

https://www.nature.com/articles/s41586-026-11111-4
2•theanonymousone•57m ago•0 comments

Deveggs – a self evolving developer eggsperience

1•kunggaochicken•59m ago•0 comments

The mysterious pneumonia in Russia deserves attention, not panic

https://www.statnews.com/2026/10/06/russia-plague-reports-pneuomonia-siberia-expert-calm/
3•EA-3167•1h ago•1 comments

Where Are the Builders?

https://near.blog/where-are-the-builders/
3•yarapavan•1h ago•1 comments

RetinaRelay – A Second Life for Your iMac

https://www.retinarelay.com/
2•tambourine_man•1h ago•0 comments

Runtime – Your AI Agents Have a Home

https://withruntime.com/
2•shermansingh•1h ago•1 comments

Trust Me, You Want SunOS 4.1.4 on Your Older Sun Boxes

https://oldsilicon.com/technologies/sunos-414-older-sun-boxes/
2•caned•1h ago•1 comments

Show HN: agentc: <1mb static/no-libc, minimal, embeddable agent with Rust/C API

https://github.com/abird-ai/agentc
3•logxroot•1h ago•0 comments

SaaS RFP – post and bid on SaaS in public

https://saasrfp.com
1•danielandrews43•1h ago•1 comments

Trump plans to charge international students $70k for work authorization

https://www.reuters.com/legal/government/trump-administration-plans-charge-international-students...
3•onemoresoop•1h ago•0 comments