frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

I built a browser tool that converts ANY file → Markdown

https://www.loom.com/share/d854af039e364fb28ca006d4654257ca
1•gavrielamati•2m ago•0 comments

Is GitHub Down?

1•henriquenunez•3m ago•0 comments

Twin suction turbines and 3-Gs in slow corners? Meet the DRG-Lola

https://arstechnica.com/cars/2025/11/an-electric-car-thats-faster-than-f1-around-monaco-thats-the...
1•PaulHoule•3m ago•0 comments

Two Elegant Use Cases for Go Build Tags

https://btema.net/blog/two-elegant-use-cases-for-go-build-tags/
2•machine424•3m ago•0 comments

TikTok will let users share feeds in DMs

https://mashable.com/article/tiktok-users-feed-share-direct-message
1•geox•3m ago•0 comments

I miss the old Qasar, not the new Qasar

https://qy.co/writings/newqasar/
1•jger15•4m ago•0 comments

I Built a Rolling Collector to Grab X Threads for AI

https://joeldare.com/how-i-built-a-rolling-collector-to-grab-x-threads-for-ai
1•codazoda•5m ago•0 comments

The Abundance Paradox: Why Netflix's Acquisition Makes Sense in the Era of AI

https://twitter.com/Konstantine/status/1998512521385488841
2•jger15•8m ago•0 comments

China's ZTE may pay over $1B to the US over foreign bribery allegations

https://www.reuters.com/sustainability/society-equity/chinas-zte-may-pay-more-than-1-billion-us-o...
3•TechTechTech•9m ago•0 comments

Google Stitch

https://stitch.withgoogle.com/
1•karma_daemon•9m ago•0 comments

AI Predictions for 2026: A DevOps Engineer's Guide

https://www.pulumi.com/blog/ai-predictions-2026-devops-guide/
1•p4ul•10m ago•0 comments

Mrva: Terminal-first approach to CodeQL multi-repo variant analysis

https://blog.trailofbits.com/2025/12/11/introducing-mrva-a-terminal-first-approach-to-codeql-mult...
1•ingve•11m ago•0 comments

Craft software that makes people feel something

https://rapha.land/craft-software-that-makes-people-feel-something/
1•lukeio•12m ago•0 comments

Stop Hoarding Tasks Like They're Canned Peaches for the Apocalypse

https://humanework.substack.com/p/stop-hoarding-tasks-like-theyre-canned
1•flail•14m ago•0 comments

JPMorgan: The biggest national security threat may be America's workforce

https://www.axios.com/2025/12/11/jpmorgan-national-security-workforce
1•toomuchtodo•17m ago•0 comments

Pop-out car door handles could disappear for good

https://www.techradar.com/vehicle-tech/hybrid-electric-vehicles/pop-out-car-door-handles-could-fi...
2•teleforce•18m ago•0 comments

Show HN: Firefly Forest

https://fireflyfo.rest
3•RandomDailyUrls•20m ago•0 comments

Show HN: Snapalabra (Learn language through images)

https://snapalabra.com/en-GB
2•detectivestory•20m ago•0 comments

French supermarket's Christmas advert is worldwide hit (without AI) [video]

https://www.youtube.com/watch?v=Na9VmMNJvsA
17•gbugniot•21m ago•3 comments

Ayaneo Pocket Play – A Gaming Phone with the Soul of a Handheld [video]

https://www.youtube.com/watch?v=XVDNGMIlzmI
2•HelloUsername•22m ago•0 comments

Show HN: JotBird – A simple Markdown editor with one-click publishing

https://www.jotbird.com
1•mcone•23m ago•0 comments

Launch: Bubs AGI OS – A Personal AGI Operating System (Founders Presale)

https://discussions.gumroad.com/l/bubs
1•Subtextofficial•23m ago•1 comments

$27,000 a Year for Health Insurance. How Can We Afford That?

https://www.nytimes.com/2025/12/10/opinion/health-care-aca-cost-insurance.html
5•ilamont•24m ago•1 comments

Microscopic robots that sense, think, act, and compute

https://www.science.org/doi/10.1126/scirobotics.adu8009
1•bookofjoe•28m ago•0 comments

Social Channels in Search Console

https://developers.google.com/search/blog/2025/12/social-channels-search-console
1•ms7892•28m ago•0 comments

Why No Fish Wants a Tongue-Eating Parasitic Louse in Its Mouth

https://animals.howstuffworks.com/marine-life/parasitic-tongue-eating-louse.htm
5•thunderbong•29m ago•0 comments

Practical Tips for Gemini 3

3•xiaoru•29m ago•0 comments

Why Google Stores Billions of Lines of Code in a Single Repository

https://research.google/pubs/why-google-stores-billions-of-lines-of-code-in-a-single-repository/
2•handfuloflight•29m ago•0 comments

Non-Interactive Apt

https://terokarvinen.com/non-interactive-apt/
2•speckx•31m ago•0 comments

The Road to 3.0.0: A Real-World Case Study of AI-Powered Open Source Maintenance

https://ibrahimcesar.cloud/blog/the-road-to-300-a-real-world-case-study-of-ai-powered-open-source...
2•ibrahimcesar•31m ago•0 comments
Open in hackernews

Show HN: Cupcake – Better performance and security for coding agents (via OPA)

https://github.com/eqtylab/cupcake
12•ramoz•22h ago
We're releasing early efforts on coding agent governance with Cupcake [1] - an open-source policy enforcement layer with native integrations. You write rules in policy-as-code (OPA/Rego), and Cupcake integrates them into the agent runtime via Hooks.

See it in action (Desktop only): https://cupcake-policy-studio.vercel.app/example-policies/se...

Help us build: https://github.com/eqtylab/cupcake

We are EQTY Lab, our mission is verifiable AI (identity, provenance, and governance). With the rise of capable agents like Claude Code, it became immediately clear that those deploying these agents need the ability to conduct their own alignment and safety controls. We can’t rely solely on the frontier labs.

This is why we created the feature request for Hooks in Claude Code [2], and pivoted away from filesystem and OS-level monitoring once those hooks were implemented. Hooks provide the critical points we need:

* Evaluation: Checking agent intent and actions.

* Prevention: Stopping unsafe or unwanted actions.

* Modification: Adjusting the agent's output before execution.

Policy-as-Code with OPA/Rego - While many agent security papers suggest similar policy architectures using invented DSLs, Cupcake is fundamentally built on Open Policy Agent (OPA) and its policy language, Rego [3].

We chose Rego because it is:

* Industry-Robust: Widely adopted across enterprise DevSecOps and cloud-native environments.

* Purpose-Built: Offers unique, mature advantages for defining, managing, and enforcing policy as code.

* Enterprise-Oriented: This makes Cupcake compatible with existing enterprise governance frameworks.

Cupcake is released under the Apache-2.0 license. We will formalize a path to v1.0.0 in Q1 of 2026. This is an early preview version. The goal with Cupcake is not suppression, but to ensure an agent is able to drive fast without crashing. To collaborate, or join forces: ramos at eqtylab dot io.

[1] https://github.com/eqtylab/cupcake

[2] https://github.com/anthropics/claude-code/issues/712

[3] https://www.openpolicyagent.org/