frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: OneClick local runtime proxy with expressive guardrails for MCP servers

https://www.tramlines.io
1•coderinsan•7mo ago
Hey HN, we’re officially launching Tramlines.io!

The idea: We now have a ton of official MCP servers for tools like Notion, Linear, Sentry, etc.—but it’s still a nightmare to use these securely. They’re susceptible to prompt injections, indirect prompt injections, confused deputy attacks, and more.

It’s a tricky problem—some MCPs, like the official Sentry MCP, are well-designed with constrained inputs and minimal mutating tools. Others, like the official Linear MCP, have looser input constraints and a wide range of mutating tools. So now, a user has to think about securing just Sentry, just Linear, and the combined attack surface of Linear + Sentry workflows. And then all that effort goes out the window when you add a new MCP—like GitHub—which massively increases the attack surface again.

To solve this, we built a lightweight proxy that runs locally at the MCP layer. It powers expressive guardrails that decide whether MCP tool calls should be allowed or blocked.

We used Python metaprogramming to define our DSL, which allows you to express guardrails as a one-to-many mapping from policy to rules. These rules support fine-grained scanning of malicious inputs/outputs, tool call sequences, and behavioral patterns.

This is where the Tramlines DSL shines. Since it’s based on Python metaprogramming, you can write rules for just Linear, just Sentry, and then compose those into higher-order rules for combined workflows like Linear + Sentry. This prevents the usual guardrail explosion problem as you scale coverage.

The DSL’s expressiveness also helps tailor how aggressive your policies are. For low-stakes workflows, drop in one of our built-in detectors—like hidden Unicode detection, prompt injection patterns, or basic PII detection. For high-stakes workflows, define custom rules that scan for contiguous or non-contiguous tool sequences, monitor latency between tool calls, or use heuristics from external sources to enrich logic.

Case in point: One of the first MCP servers we evaluated was the official stdio Heroku MCP—a security nightmare due to its massive set of mutating tools. Here’s an exploit we found and the guardrails we wrote to mitigate it - https://www.tramlines.io/blog/heroku-mcp-exploit After we reported it, Heroku acknowledged and nerfed their remote MCP tool spec to drastically reduce the blast radius—removing tools that manage logs, deployments, etc. and leaving only those for managing instances.

With Tramlines, our goal is to give users the guardrail assurances they need to confidently use powerful MCPs—without having to rely on nerfed toolsets out of fear.

EchoJEPA: Latent Predictive Foundation Model for Echocardiography

https://github.com/bowang-lab/EchoJEPA
1•euvin•7m ago•0 comments

Disablling Go Telemetry

https://go.dev/doc/telemetry
1•1vuio0pswjnm7•9m ago•0 comments

Effective Nihilism

https://www.effectivenihilism.org/
1•abetusk•12m ago•1 comments

The UK government didn't want you to see this report on ecosystem collapse

https://www.theguardian.com/commentisfree/2026/jan/27/uk-government-report-ecosystem-collapse-foi...
2•pabs3•14m ago•0 comments

No 10 blocks report on impact of rainforest collapse on food prices

https://www.thetimes.com/uk/environment/article/no-10-blocks-report-on-impact-of-rainforest-colla...
1•pabs3•15m ago•0 comments

Seedance 2.0 Is Coming

https://seedance-2.app/
1•Jenny249•16m ago•0 comments

Show HN: Fitspire – a simple 5-minute workout app for busy people (iOS)

https://apps.apple.com/us/app/fitspire-5-minute-workout/id6758784938
1•devavinoth12•16m ago•0 comments

Dexterous robotic hands: 2009 – 2014 – 2025

https://old.reddit.com/r/robotics/comments/1qp7z15/dexterous_robotic_hands_2009_2014_2025/
1•gmays•21m ago•0 comments

Interop 2025: A Year of Convergence

https://webkit.org/blog/17808/interop-2025-review/
1•ksec•30m ago•1 comments

JobArena – Human Intuition vs. Artificial Intelligence

https://www.jobarena.ai/
1•84634E1A607A•34m ago•0 comments

Concept Artists Say Generative AI References Only Make Their Jobs Harder

https://thisweekinvideogames.com/feature/concept-artists-in-games-say-generative-ai-references-on...
1•KittenInABox•38m ago•0 comments

Show HN: PaySentry – Open-source control plane for AI agent payments

https://github.com/mkmkkkkk/paysentry
1•mkyang•40m ago•0 comments

Show HN: Moli P2P – An ephemeral, serverless image gallery (Rust and WebRTC)

https://moli-green.is/
1•ShinyaKoyano•49m ago•0 comments

The Crumbling Workflow Moat: Aggregation Theory's Final Chapter

https://twitter.com/nicbstme/status/2019149771706102022
1•SubiculumCode•54m ago•0 comments

Pax Historia – User and AI powered gaming platform

https://www.ycombinator.com/launches/PMu-pax-historia-user-ai-powered-gaming-platform
2•Osiris30•54m ago•0 comments

Show HN: I built a RAG engine to search Singaporean laws

https://github.com/adityaprasad-sudo/Explore-Singapore
2•ambitious_potat•1h ago•0 comments

Scams, Fraud, and Fake Apps: How to Protect Your Money in a Mobile-First Economy

https://blog.afrowallet.co/en_GB/tiers-app/scams-fraud-and-fake-apps-in-africa
1•jonatask•1h ago•0 comments

Porting Doom to My WebAssembly VM

https://irreducible.io/blog/porting-doom-to-wasm/
2•irreducible•1h ago•0 comments

Cognitive Style and Visual Attention in Multimodal Museum Exhibitions

https://www.mdpi.com/2075-5309/15/16/2968
1•rbanffy•1h ago•0 comments

Full-Blown Cross-Assembler in a Bash Script

https://hackaday.com/2026/02/06/full-blown-cross-assembler-in-a-bash-script/
1•grajmanu•1h ago•0 comments

Logic Puzzles: Why the Liar Is the Helpful One

https://blog.szczepan.org/blog/knights-and-knaves/
1•wasabi991011•1h ago•0 comments

Optical Combs Help Radio Telescopes Work Together

https://hackaday.com/2026/02/03/optical-combs-help-radio-telescopes-work-together/
2•toomuchtodo•1h ago•1 comments

Show HN: Myanon – fast, deterministic MySQL dump anonymizer

https://github.com/ppomes/myanon
1•pierrepomes•1h ago•0 comments

The Tao of Programming

http://www.canonical.org/~kragen/tao-of-programming.html
2•alexjplant•1h ago•0 comments

Forcing Rust: How Big Tech Lobbied the Government into a Language Mandate

https://medium.com/@ognian.milanov/forcing-rust-how-big-tech-lobbied-the-government-into-a-langua...
4•akagusu•1h ago•1 comments

PanelBench: We evaluated Cursor's Visual Editor on 89 test cases. 43 fail

https://www.tryinspector.com/blog/code-first-design-tools
2•quentinrl•1h ago•2 comments

Can You Draw Every Flag in PowerPoint? (Part 2) [video]

https://www.youtube.com/watch?v=BztF7MODsKI
1•fgclue•1h ago•0 comments

Show HN: MCP-baepsae – MCP server for iOS Simulator automation

https://github.com/oozoofrog/mcp-baepsae
1•oozoofrog•1h ago•0 comments

Make Trust Irrelevant: A Gamer's Take on Agentic AI Safety

https://github.com/Deso-PK/make-trust-irrelevant
9•DesoPK•1h ago•4 comments

Show HN: Sem – Semantic diffs and patches for Git

https://ataraxy-labs.github.io/sem/
1•rs545837•1h ago•1 comments