frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: AgentShield SDK – Runtime security for agentic AI applications

https://pypi.org/project/agentshield-sdk/
2•iamsanjayk•8mo ago
Hi HN,

We built AgentShield, a Python SDK and CLI to add a security checkpoint for AI agents before they perform potentially risky actions like external API calls or executing generated code.

Problem: Agents calling arbitrary URLs or running unchecked code can lead to data leaks, SSRF, system damage, etc.

Solution: AgentShield intercepts these actions:

- guarded_get(url=...): Checks URL against policies (block internal IPs, HTTP, etc.) before making the request.

- safe_execute(code_snippet=...): Checks code for risky patterns (os import, eval, file access, etc.) before execution.

It works via a simple API call to evaluate the action against configurable security policies. It includes default policies for common risks.

Get Started:

Install: pip install agentshield-sdk

Get API Key (CLI): agentshield keys create

Use in Python: from agentshield_sdk import AgentShield # shield = AgentShield(api_key=...) # await shield.guarded_get(url=...) # await shield.safe_execute(code_snippet=...)

Full details, documentation, and the complete README are at <https://pypi.org/project/agentshield-sdk/>

We built this because securing agent interactions felt crucial as they become more capable. It's still early days, and we'd love to get your feedback on the approach, usability, and policies.

Comments

subhampramanik•8mo ago
Looks interesting -- Does it work like a wrapper on top of OpenAI specs? Like, can we just replace the OpenAI package with this, and it's fully integrated?
iamsanjayk•8mo ago
Hey, thanks for asking! Good question.

AgentShield isn't a wrapper around the OpenAI package, so you wouldn't replace openai with it. Think of AgentShield as a separate safety check you call just before your agent actually tries to run a specific risky action.

So, you'd still use the openai library as normal to get your response (like a URL to call or code to run). Then, before you actually use httpx/requests to call that URL, or exec() to run the code, you'd quickly check it with shield.guarded_get(the_url) or shield.safe_execute(the_code).

Currently, It focuses on securing the action itself (the URL, the code snippet) rather than wrapping the LLM call that generated it.

Ansible battle tested hardening for Linux, SSH, Nginx, MySQL

https://github.com/dev-sec/ansible-collection-hardening
1•walterbell•57s ago•0 comments

PostTrainBench

https://posttrainbench.com/
1•gmays•1m ago•0 comments

Ni8mare – Unauthenticated Remote Code Execution in N8n (CVE-2026-21858)

https://www.cyera.com/research-labs/ni8mare-unauthenticated-remote-code-execution-in-n8n-cve-2026...
1•tamnd•1m ago•0 comments

$101M xPrize Healthspan Awards First Milestone Winners

https://www.xprize.org/news/101m-xprize-healthspan-awards-first-milestone-winners-driving-toward-...
1•EvgeniyZh•1m ago•0 comments

Man jailed for selling chemicals online to help people kill themselves

https://www.bbc.com/news/articles/c87rdl1zrwwo
2•vinni2•4m ago•0 comments

The Demon Dispatches (The Screwed-Up Emails)

1•robert_dhs•6m ago•0 comments

Reducing RLHF hallucinations and sycophancy in Gemini 3 (Interactive Demo)

https://tomaszmachnik.pl/gemini-fix-en.html
1•musculus•6m ago•0 comments

Implementing NaN Boxing in a Stack-Based VM

1•tracyspacy•8m ago•0 comments

CILens – CI/CD Pipeline Analytics for GitLab

https://github.com/dsalaza4/cilens
1•Bral1232•8m ago•1 comments

Show HN: PhotoMeh – Upload a car damage photo. Get an instant repair estimate

https://photomeh.com
1•arturss•8m ago•0 comments

App Selection Criteria

https://www.coryd.dev/posts/2025/app-selection-criteria
1•cdrnsf•10m ago•0 comments

Do kangaroos drown predators and do dogs poo facing north?

https://www.abc.net.au/news/science/2021-04-10/animal-myths-dogs-kangaroos-cockatoos/100038384
3•thunderbong•11m ago•0 comments

Nvidia Vera Rubin NVL72

https://www.nvidia.com/en-us/data-center/vera-rubin-nvl72/
1•lorenzohess•11m ago•0 comments

Show HN: I spent 12 months building a conversational agent for social media

https://www.postreach.ai/
2•John_V•11m ago•1 comments

Show HN: Aukpad – open-source real-time collaboration notepad

https://aukpad.com/vb4o/
1•whatbackup•12m ago•0 comments

We Open-Sourced a New Semantic Highlighting Model for Production AI

https://milvus.io/blog/zilliz-trained-and-open-sourced-bilingual-semantic-highlighting-model-for-...
1•Fendy•12m ago•0 comments

Universally Converging Representations of Matter in Scientific Foundation Models

https://arxiv.org/abs/2512.03750
1•gmays•13m ago•0 comments

Study: Higher female representation in parliaments boosts citizen trust

https://news.st-andrews.ac.uk/archive/parliaments-which-have-higher-female-representation-are-tru...
2•giuliomagnifico•13m ago•0 comments

I can't stop yelling at Claude Code

https://www.theargumentmag.com/p/i-cant-stop-yelling-at-claude-code
2•ctoth•14m ago•0 comments

An interactive Formula 1 race viz and data analysis tool built with Python

https://github.com/IAmTomShaw/f1-race-replay
1•duck•15m ago•0 comments

Texas A&M bans part of Plato's Symposium

https://dailynous.com/2026/01/06/texas-am-bans-plato/
6•loughnane•16m ago•2 comments

AI Native Osint Platform

https://www.intrace.ai/
1•nuttyjoe•16m ago•0 comments

Architecting Consent for AI: Deceptive Patterns in Firefox Link Previews

https://www.quippd.com/writing/2026/01/06/architecting-consent-for-ai-deceptive-patterns-in-firef...
1•BoredPositron•17m ago•0 comments

The Manchester Garbage Collector and purple-garden's runtime

https://xnacly.me/posts/2026/manchester-garbage-collector/
1•xnacly•17m ago•0 comments

Eat Real Food – Introducing the New Pyramid

https://realfood.gov
40•atestu•17m ago•26 comments

Japanese nuclear plant reopening postponed following data fabrication

https://arstechnica.com/science/2026/01/japanese-nuclear-plant-operator-fabricated-seismic-risk-d...
3•pseudolus•19m ago•0 comments

Show HN: Audit8n – Free, privacy-first n8n workflow analyzer

https://audit8n.com/en
1•juanm_acebal•20m ago•0 comments

India's PM lobbied Trump to like his social media posts

https://thewire.in/diplomacy/meetings-more-meetings-social-media-flags-trade-talks-inside-the-ext...
2•mandeepj•21m ago•0 comments

Startup founder accused in winery rampage allowed to complete trade from jail

https://www.sfchronicle.com/bayarea/article/bay-area-winery-rampage-21280414.php
2•iancmceachern•22m ago•0 comments

Show HN: A 134-Modality AGI Core Built in Python (Velocity_Nova_Prime)

1•AISovereignDev•22m ago•0 comments