frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: AgentShield SDK – Runtime security for agentic AI applications

https://pypi.org/project/agentshield-sdk/
2•iamsanjayk•8mo ago
Hi HN,

We built AgentShield, a Python SDK and CLI to add a security checkpoint for AI agents before they perform potentially risky actions like external API calls or executing generated code.

Problem: Agents calling arbitrary URLs or running unchecked code can lead to data leaks, SSRF, system damage, etc.

Solution: AgentShield intercepts these actions:

- guarded_get(url=...): Checks URL against policies (block internal IPs, HTTP, etc.) before making the request.

- safe_execute(code_snippet=...): Checks code for risky patterns (os import, eval, file access, etc.) before execution.

It works via a simple API call to evaluate the action against configurable security policies. It includes default policies for common risks.

Get Started:

Install: pip install agentshield-sdk

Get API Key (CLI): agentshield keys create

Use in Python: from agentshield_sdk import AgentShield # shield = AgentShield(api_key=...) # await shield.guarded_get(url=...) # await shield.safe_execute(code_snippet=...)

Full details, documentation, and the complete README are at <https://pypi.org/project/agentshield-sdk/>

We built this because securing agent interactions felt crucial as they become more capable. It's still early days, and we'd love to get your feedback on the approach, usability, and policies.

Comments

subhampramanik•8mo ago
Looks interesting -- Does it work like a wrapper on top of OpenAI specs? Like, can we just replace the OpenAI package with this, and it's fully integrated?
iamsanjayk•8mo ago
Hey, thanks for asking! Good question.

AgentShield isn't a wrapper around the OpenAI package, so you wouldn't replace openai with it. Think of AgentShield as a separate safety check you call just before your agent actually tries to run a specific risky action.

So, you'd still use the openai library as normal to get your response (like a URL to call or code to run). Then, before you actually use httpx/requests to call that URL, or exec() to run the code, you'd quickly check it with shield.guarded_get(the_url) or shield.safe_execute(the_code).

Currently, It focuses on securing the action itself (the URL, the code snippet) rather than wrapping the LLM call that generated it.

We Built an AI Video Aggregator – Here Are the Hard Parts Nobody Talks About

https://reelive.ai/blog/we-built-an-ai-video-aggregator-here-are-the-hard-parts-nobody-talks-about
1•danny_miller•58s ago•0 comments

Stop Overusing Interfaces (2017)

https://blog.hovland.xyz/2017-04-22-stop-overusing-interfaces/
1•mrkeen•1m ago•0 comments

Executive Order Limiting Stock Buybacks and Dividends for Defense Contractors

https://www.klgates.com/President-Trump-Issues-Executive-Order-Limiting-Stock-Buybacks-and-Divide...
1•NalNezumi•1m ago•0 comments

Show HN: Margin – Local-first podcast insights using Apple Foundation Models

https://www.marginpodcasts.com
1•zxlk21e•2m ago•0 comments

The Case for Greenland

https://www.campbellramble.ai/p/the-case-for-greenland
1•thedudeabides5•4m ago•0 comments

Some Thoughts on the Open Web

https://www.mnot.net/blog/2026/01/20/open_web
1•mooreds•4m ago•0 comments

A Sudoku-based low-entropy proxy protocol

https://github.com/SUDOKU-ASCII/sudoku
1•csmantle•6m ago•0 comments

Technical Debt Just Got a Bailout

https://bitbrawn.com/posts/technical-debt-just-got-a-bailout
1•retrac98•6m ago•0 comments

Is your codebase holding back your AI tools?

https://codehealth.sibylline.dev/
1•CuriouslyC•7m ago•1 comments

Show HN: PasteGuard – Use OpenAI and Claude without exposing your secrets

https://github.com/sgasser/pasteguard
2•sgasser•9m ago•1 comments

Ask HN: What are good resources to get familiar with AI code editors?

3•northfield27•10m ago•0 comments

Why Hardware-Attested Credentials for AI Infrastructure

https://nmelo.github.io/secureinfra-blog/2026/01/20/why-hardware-attested-credentials/
1•nmelo•11m ago•1 comments

Personal Infrastructure Setup 2026

https://linderud.dev/blog/personal-infrastructure-setup-2026/
1•birdculture•11m ago•0 comments

Coding Before Gpt4 [video]

https://www.youtube.com/watch?v=FdrmjjgHYzM
1•yungwarlock•12m ago•0 comments

Show HN: dol – Detect dark/light mode on the CLI

https://github.com/netmute/dol
1•netmute•13m ago•0 comments

The future of Legal Tech will be vibe-coded by lawyers

https://theredline.versionstory.com/p/the-future-of-legal-tech-will-be
1•jpbryan•13m ago•0 comments

Trump's Man in Greenland

https://responsiblestatecraft.org/trump-greenland-2674914000/
1•j_levy187•13m ago•0 comments

I scanned 2,500 Hugging Face models for malware/issues. Here is the data

https://github.com/ArseniiBrazhnyk/Veritensor
2•arseniibr•13m ago•2 comments

Modder Gets Doom Running on a Pressure Cooker

https://retrododo.com/modder-gets-doom-running-on-a-pressure-cooker/
1•coloneltcb•14m ago•0 comments

A Fully Open-Source Future

https://extroverteddeveloper.com/2026/01/20/a-fully-open-source-future/
2•Xatter•16m ago•0 comments

See for yourself just how massive Meta's Hyperion data center is

https://sherwood.news/tech/see-for-yourself-just-how-massive-metas-hyperion-data-center-is/
1•jonathanmkeegan•17m ago•0 comments

I love the old man minimap in VS Code

https://blog.andreani.in/blog/35/
1•gandreani•18m ago•0 comments

Show HN: RAG chunk size "best practices" failed on legal text – I benchmarked it

https://medium.com/@TheWake/i-built-a-rag-tuning-tool-and-discovered-intuition-fails-on-legal-tex...
2•metawake•18m ago•1 comments

Nature's Super Feather

https://www.nytimes.com/2026/01/20/science/birds-feathers-filoplumes-cornell.html
1•bookofjoe•20m ago•1 comments

Ask HN: Does "Zapier for payment automation" exist?

1•PL_Venard•20m ago•2 comments

Metallic θ-phase tantalum nitride has a thermal conductivity 3x that of copper

https://www.science.org/doi/10.1126/science.aeb1142
1•westurner•20m ago•0 comments

USB Gadget Mode in Raspberry Pi OS: SSH over USB

https://www.raspberrypi.com/news/usb-gadget-mode-in-raspberry-pi-os-ssh-over-usb/
2•mariuz•20m ago•0 comments

Why "Letting AI Write Directly" Is the Worst Approach

https://blackeagle.cozyai.chat/blog/aiarticle.html
1•cuteeaglet•23m ago•0 comments

Comic-Con Bans AI Art After Artist Pushback

https://www.404media.co/comic-con-bans-ai-art-after-artist-pushback/
6•cdrnsf•24m ago•0 comments

Show HN: Abuse URL shorteners to host throwaway webpages

2•fainpul•27m ago•0 comments