frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: AgentShield SDK – Runtime security for agentic AI applications

https://pypi.org/project/agentshield-sdk/
2•iamsanjayk•8mo ago
Hi HN,

We built AgentShield, a Python SDK and CLI to add a security checkpoint for AI agents before they perform potentially risky actions like external API calls or executing generated code.

Problem: Agents calling arbitrary URLs or running unchecked code can lead to data leaks, SSRF, system damage, etc.

Solution: AgentShield intercepts these actions:

- guarded_get(url=...): Checks URL against policies (block internal IPs, HTTP, etc.) before making the request.

- safe_execute(code_snippet=...): Checks code for risky patterns (os import, eval, file access, etc.) before execution.

It works via a simple API call to evaluate the action against configurable security policies. It includes default policies for common risks.

Get Started:

Install: pip install agentshield-sdk

Get API Key (CLI): agentshield keys create

Use in Python: from agentshield_sdk import AgentShield # shield = AgentShield(api_key=...) # await shield.guarded_get(url=...) # await shield.safe_execute(code_snippet=...)

Full details, documentation, and the complete README are at <https://pypi.org/project/agentshield-sdk/>

We built this because securing agent interactions felt crucial as they become more capable. It's still early days, and we'd love to get your feedback on the approach, usability, and policies.

Comments

subhampramanik•8mo ago
Looks interesting -- Does it work like a wrapper on top of OpenAI specs? Like, can we just replace the OpenAI package with this, and it's fully integrated?
iamsanjayk•8mo ago
Hey, thanks for asking! Good question.

AgentShield isn't a wrapper around the OpenAI package, so you wouldn't replace openai with it. Think of AgentShield as a separate safety check you call just before your agent actually tries to run a specific risky action.

So, you'd still use the openai library as normal to get your response (like a URL to call or code to run). Then, before you actually use httpx/requests to call that URL, or exec() to run the code, you'd quickly check it with shield.guarded_get(the_url) or shield.safe_execute(the_code).

Currently, It focuses on securing the action itself (the URL, the code snippet) rather than wrapping the LLM call that generated it.

Oil Tanker Pursued by the U.S. Appears to Claim Russian Protection

https://www.wsj.com/politics/national-security/oil-tanker-pursued-by-the-u-s-appears-to-claim-rus...
1•JumpCrisscross•1m ago•0 comments

2026: The Year of Java in the Terminal

https://xam.dk/blog/lets-make-2026-the-year-of-java-in-the-terminal/
1•based2•1m ago•0 comments

Scaffolding to Superhuman: How Curriculum Learning Solved 2048 and Tetris

https://kywch.github.io/blog/2025/12/curriculum-learning-2048-tetris/
1•a1k0n•3m ago•0 comments

Trump administration removes three spyware-linked executives from sanctions list

https://www.reuters.com/business/trump-administration-removes-three-spyware-linked-executives-san...
1•campuscodi•5m ago•0 comments

Desktop-2FA: offline desktop application for generating, managing TOTP 2FA codes

https://github.com/wrogistefan/desktop-2fa
1•thunderbong•5m ago•0 comments

A man taking over the Large Hadron Collider – only to switch it off

https://www.theguardian.com/science/2025/dec/31/large-hadron-collider-head-of-cern-mark-thomson
1•spopejoy•6m ago•0 comments

Built a local-first crypto P&L and TurboTax Online export tool (open source)

1•metalusmonk•8m ago•0 comments

Trump Signs Defense Bill Prohibiting China-Based Engineers in Pentagon IT Work

https://www.propublica.org/article/trump-law-microsoft-digital-escort-ban-china
2•_____k•8m ago•0 comments

What I learned building an opinionated and minimal coding agent

https://mariozechner.at/posts/2025-11-30-pi-coding-agent/
1•PaulHoule•8m ago•0 comments

The Compiler Is Your Best Friend, Stop Lying to It

https://blog.daniel-beskin.com/2025-12-22-the-compiler-is-your-best-friend-stop-lying-to-it
1•based2•10m ago•0 comments

Playing to Lose

https://powering-the-planet.ghost.io/playing-to-lose/
1•DamonHD•10m ago•0 comments

The Cost of a Closure in C, the Rest

https://thephd.dev/the-cost-of-a-closure-in-c-c2y-followup
1•gsky•10m ago•0 comments

Autonomous Medical Officer Support Software on the ISS (2024)

https://ntrs.nasa.gov/citations/20240012964
1•StatsAreFun•11m ago•0 comments

PS5 ROM Keys

https://www.psdevwiki.com/ps5/Keys#PS5_ROM_Keys
2•m00dy•12m ago•0 comments

What Is Apache Spark: Complete 2026 Guide to AI-Native Big Data Processing

https://www.netcomlearning.com/blog/apache-spark
2•based2•12m ago•0 comments

The HSBC app refuses to work if "Bitwarden" is installed on user's Android phone

https://twitter.com/nixcraft/status/2006133658495656377
1•fortran77•13m ago•1 comments

The State of LLMs 2025: Progress, Problems, and Predictions

https://magazine.sebastianraschka.com/p/state-of-llms-2025
2•ModelForge•15m ago•0 comments

Stardew Valley developer made a $125k donation to the FOSS C# framework MonoGame

https://monogame.net/blog/2025-12-30-385-new-sponsor-announcement/
34•haunter•16m ago•8 comments

Online interpreter of SAKO, a Polish 1959 programming language

https://sako-zam41.netlify.app
1•nathell•18m ago•1 comments

How I Built a Full-Stack SaaS Platform in 150 Commits (and 22 Days) with AI

https://medium.com/@smccaffrey70/how-i-built-a-full-stack-saas-platform-in-150-commits-and-22-day...
1•smccaffrey•19m ago•0 comments

By how much does your memory allocator overallocate?

https://lemire.me/blog/2025/12/30/by-how-much-does-your-memory-allocator-overallocates/
1•gsky•20m ago•0 comments

What I've done with all the extra time gained from learning the Ian Knot

https://blog.klungo.no/2025/12/31/two-years-of-the-ian-knot/
1•danielskogly•22m ago•0 comments

Notes on Building Agentic Tools Using Local LLMs

https://rdrn.dev/ai-agents/
1•sails•24m ago•1 comments

Show HN: OpenCode plugin for interactive plan annotation

https://github.com/backnotprop/plannotator/tree/main/apps/opencode-plugin
2•ramoz•25m ago•0 comments

The new bootc kickstart command in Anaconda

https://fedoramagazine.org/introducing-the-new-bootc-kickstart-command-in-anaconda/
2•coldsunrays•26m ago•0 comments

Show HN: Multimodal Search over the National Gallery of Art

https://mxp.co/r/nga
1•Beefin•27m ago•0 comments

Reusable agents meet agentic UI: AG-UI integration for Open Agent Specification

https://blogs.oracle.com/ai-and-datascience/announcing-ag-ui-integration-for-agent-spec
1•nathan_tarbert•28m ago•0 comments

The Year in Search

https://glitchads.ai/the-year-in-search/
1•vinnyglennon•29m ago•0 comments

Altered brain tissue microstructure in long Covid&recovered Covid-19 individuals

https://www.sciencedirect.com/science/article/pii/S2666354625002005
3•bookofjoe•30m ago•3 comments

Harvard Principles and Practices of Engineering Artificially Intelligent Systems

https://github.com/harvard-edge/cs249r_book
3•Terretta•31m ago•1 comments