frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: AgentShield SDK – Runtime security for agentic AI applications

https://pypi.org/project/agentshield-sdk/
2•iamsanjayk•11mo ago
Hi HN,

We built AgentShield, a Python SDK and CLI to add a security checkpoint for AI agents before they perform potentially risky actions like external API calls or executing generated code.

Problem: Agents calling arbitrary URLs or running unchecked code can lead to data leaks, SSRF, system damage, etc.

Solution: AgentShield intercepts these actions:

- guarded_get(url=...): Checks URL against policies (block internal IPs, HTTP, etc.) before making the request.

- safe_execute(code_snippet=...): Checks code for risky patterns (os import, eval, file access, etc.) before execution.

It works via a simple API call to evaluate the action against configurable security policies. It includes default policies for common risks.

Get Started:

Install: pip install agentshield-sdk

Get API Key (CLI): agentshield keys create

Use in Python: from agentshield_sdk import AgentShield # shield = AgentShield(api_key=...) # await shield.guarded_get(url=...) # await shield.safe_execute(code_snippet=...)

Full details, documentation, and the complete README are at <https://pypi.org/project/agentshield-sdk/>

We built this because securing agent interactions felt crucial as they become more capable. It's still early days, and we'd love to get your feedback on the approach, usability, and policies.

Comments

subhampramanik•11mo ago
Looks interesting -- Does it work like a wrapper on top of OpenAI specs? Like, can we just replace the OpenAI package with this, and it's fully integrated?
iamsanjayk•11mo ago
Hey, thanks for asking! Good question.

AgentShield isn't a wrapper around the OpenAI package, so you wouldn't replace openai with it. Think of AgentShield as a separate safety check you call just before your agent actually tries to run a specific risky action.

So, you'd still use the openai library as normal to get your response (like a URL to call or code to run). Then, before you actually use httpx/requests to call that URL, or exec() to run the code, you'd quickly check it with shield.guarded_get(the_url) or shield.safe_execute(the_code).

Currently, It focuses on securing the action itself (the URL, the code snippet) rather than wrapping the LLM call that generated it.

Short and Long-Term Consequences of Intra-Household Disease Spread [pdf]

https://www.nber.org/system/files/working_papers/w29524/w29524.pdf
1•alphabetatango•3m ago•0 comments

Project Omni

https://github.com/misaeldasilva123ms96-commits/Projeto-Omni
1•zaydenrivas•7m ago•0 comments

Too much noise with AI startups

1•xtannotnoise•7m ago•0 comments

Apple Changes Prongs on MacBook Chargers; Breaks Compatibility

https://discussions.apple.com/thread/256262949?sortBy=rank
1•gardnr•7m ago•1 comments

Show HN: Trustless Campaigns – Gecko transforms brand-creator deals

https://www.geckovision.tech
1•ernanibmurtinho•9m ago•0 comments

A flood of useful security reports

https://lwn.net/Articles/1066581/
1•signa11•10m ago•0 comments

Show HN: Sprite sheets from prompts (Codex skill)

https://github.com/0x0funky/agent-sprite-forge
1•super135799•10m ago•0 comments

The George Business, by Roger Zelazny (1980)

https://www.eternal-flame.org/library/oldlibrary/georgebusiness.html
1•xeonmc•12m ago•0 comments

Canonical Releases Ubuntu 26.04 LTS Resolute Raccoon

https://ubuntu.com//blog/canonical-releases-ubuntu-26-04-lts-resolute-raccoon
2•jruohonen•12m ago•1 comments

Ireland must recuse itself from EU Presidency digital files

https://www.iccl.ie/press-release/ireland-recuse-eu-presidency-digital-files-enforce/
1•jruohonen•15m ago•2 comments

How Hard Is It to Open a File?

https://blog.sebastianwick.net/posts/how-hard-is-it-to-open-a-file/
1•ffin•18m ago•0 comments

US climate sees decline in both hot and cold extreme temperatures since 1899

https://phys.org/news/2026-04-climate-decline-hot-cold-extreme.html
1•plun9•21m ago•0 comments

Mojo language, any hardware. Systems-level performance. Pythonic syntax

https://www.modular.com/open-source/mojo
1•KnuthIsGod•21m ago•0 comments

Agyn: A Multi-Agent System for Team-Based Autonomous Software Engineering

https://arxiv.org/abs/2602.01465
1•wek•22m ago•0 comments

Bret Taylor's Sierra Buys YC-Backed AI Startup Fragment

https://techcrunch.com/2026/04/23/bret-taylors-sierra-buys-yc-backed-ai-startup-fragment/
1•zachdotai•26m ago•0 comments

Light-activated material offers new approach to carbon dioxide conversion

https://phys.org/news/2026-03-material-approach-carbon-dioxide-conversion.html
1•PaulHoule•27m ago•0 comments

Prompt engineering is dead, but Claude still tries

https://blog.exe.dev/prompt-engineering-is-dead
1•vinipolicena•27m ago•0 comments

Launching XOXO Explore

https://xoxofest.com/blog/2026-launching-xoxo-explore/
1•benwerd•29m ago•0 comments

Dial9: A Flight Recorder for Tokio

https://tokio.rs/blog/2026-03-18-dial9
1•PaulHoule•31m ago•0 comments

Making a 3B Robot Policy Faster

https://www.hapticlabs.ai/blog/2026/04/23/my-first-week-at-haptic-making-a-3b-robot-policy-faster
4•ibero•32m ago•0 comments

Glápagos Back end – built for the Americas

https://www.glapagos.com/glapp
1•thecastroquiels•33m ago•0 comments

Cybersecurity incident leaves U.S. drivers stranded

https://spectrum.ieee.org/connected-vehicle-risks
3•pseudolus•37m ago•1 comments

New Long-Necked Dinosaur Diacovered in Patagonia

https://snsb.de/en/palaeontologists-discover-new-long-necked-dinosaur-in-patagonia/
2•gmays•38m ago•0 comments

Supply chain cracks constrain AI boom

https://www.axios.com/2026/04/23/ai-iran-supply-chain
2•petethomas•41m ago•0 comments

Shearwaters washing up dead on Australian beaches not due to 'natural' causes

https://theconversation.com/more-shearwaters-are-washing-up-dead-on-australian-beaches-its-not-du...
1•defrost•45m ago•0 comments

Tenfold: Ten Years of Ink & Switch

https://www.inkandswitch.com/
1•spiralganglion•45m ago•0 comments

Ask HN: How do solo devs protect their work in the age of vibe coding?

3•langs•46m ago•2 comments

Combatting the person who trademarked the name of silent actress Louise Brooks

https://louisebrookssociety.blogspot.com/2026/04/trademark-on-film-icon-louise-brooks.html
1•aworks•47m ago•0 comments

Show HN: MirrorNeuron – an open-source runtime for reliable on-device AI agents

https://www.mirrorneuron.io/
1•homerquan•49m ago•0 comments

Tesla Never Stopped Developing the Model S [video]

https://www.youtube.com/watch?v=IwnJzP0TlCk
2•CHB0403085482•52m ago•0 comments