frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: TheAuditor – I indexed my code into SQLite to stop AI hallucinations

https://github.com/TheAuditorTool/Auditor
5•TheAuditorTool•7h ago

Comments

TheAuditorTool•7h ago
Hi HN, OP here.

I’m a former Enterprise Systems Architect (Cisco/VMware) turned "vibe coder." I realized quickly that AI coding is dangerous because LLMs lack *context* and *verification*. They hallucinate because they are guessing at the file structure.

So, out of pure spite for flaky tools, I built *TheAuditor*.

*The Concept:* Instead of grepping files, I index the entire repo (Python, TS, Go, Rust, Terraform, CDK) into a local SQLite database (~180MB for a mid-sized repo). Because the code is in a DB, I can query the call graph like SQL.

*The Tech (The "Hard" Part):* I needed a way to trace data flow through the infrastructure to prevent the AI from introducing vulnerabilities. I ended up building a *Hybrid Taint Engine* that extends the Oracle Labs (2021) IFDS research: 1. *Forward Flow:* Traces entry points to reachable sinks to prune the graph. 2. *Backward IFDS:* Runs a precise "Interprocedural Finite Distributive Subset" analysis on the pruned graph. 3. *The Handshake:* We only report vulnerabilities where both engines intersect.

*The "Systems Architect" approach:* Coming from a background in critical infrastructure, I hate silent failures. I implemented a *5-Layer Fidelity System*. Every parser emits a cryptographic manifest. If the DB storage receipt doesn't match the manifest (transaction mismatch or data loss), the tool hard-crashes. I'd rather a stack trace than a false negative.

*Why I built it:* I use this as a "Flight Computer" for my AI agent. * Before refactoring, it runs `aud impact` to calculate the blast radius. * Before writing code, it runs `aud explain` to get a token-optimized context bundle of definitions.

This is v2 (a complete rewrite after 800 commits). I learned a lot since my first attempt. The code is open source (AGPL).

Happy to answer questions about the SQLite schema or the IFDS implementation.

The <time> element should do something

https://nolanlawson.com/2025/12/14/the-time-element-should-actually-do-something/
1•todsacerdoti•2m ago•0 comments

Google's Advent of Agents

https://adventofagents.com/
2•shubham_saboo•2m ago•0 comments

Show HN: In-browser data exploration toolkit

https://github.com/Datakitpage/Datakit
1•parsabg•6m ago•0 comments

The Future of the Linux-rs Project

https://mateolafalce.github.io/2025/The%20Future%20of%20the%20Linux-rs%20Project/TheFutureoftheLi...
1•lafalce•8m ago•1 comments

Muslim hero risked his own life to save others

https://ahmedelahmed.com
2•dorongrinstein•8m ago•2 comments

Anthropic Outage for Opus 4.5 and Sonnet 4/4.5 across all services

https://status.claude.com/incidents/9g6qpr72ttbr
10•pablo24602•12m ago•3 comments

Ozymandias

https://blog.engora.com/2025/12/ozymandias.html
1•Vermin2000•12m ago•1 comments

The Plan Is the Program

https://www.proofofconcept.pub/p/the-plan-is-the-program
1•herbertl•13m ago•0 comments

AI will transform science. Just not the way you think

https://ischemist.com/writings/long-form/will-ai-transform-science
1•hiddenseal•14m ago•0 comments

My Battle with Datetimes in Prod

https://www.datacompose.io/blog/fun-with-datetimes
1•tccole•15m ago•1 comments

Distropack now supports TAR archives aside from RPM DEB and PKG

https://distropack.dev/Blog/Post?slug=introducing-tar-package-support-simple-distribution-without...
1•segfault0x23•18m ago•1 comments

Job security in the age of AI? Get a state license – any state license

https://www.theguardian.com/business/2025/dec/15/job-security-state-license
3•bookofjoe•18m ago•0 comments

Rethinking a Mathematical Notation for Possible LLM Applications

https://ursaxza.substack.com/p/a-hole-new-word
1•ursAxZA•21m ago•0 comments

Show HN: Carolina Cloud – 1/3 the cost of AWS for data science workloads

https://carolinacloud.io/
2•bojangleslover•21m ago•0 comments

Avoiding Fallback and Cold Paths

https://timkellogg.me/blog/2021/01/29/cold-paths
1•fanf2•23m ago•0 comments

Trump's new visa fee inhibits hiring teachers in California – CalMatters

https://calmatters.org/education/2025/12/teaching-jobs-california-foreign-worker-visa/
2•bilsbie•29m ago•0 comments

How do you stay focused while working on a computer all day?

2•Ben_Tycho•33m ago•2 comments

Opik Agent Optimizer – Open-Source Prompt Optimization Framework

https://github.com/comet-ml/opik/tree/main/sdks/opik_optimizer
4•calebkaiser•36m ago•0 comments

Is Your Startup Failure Your War or Shame?

https://manidoraisamy.com/startup-failure.html
1•QueensGambit•36m ago•0 comments

Reviving, reproducing, and revisiting Axelrod's second tournament

https://arxiv.org/abs/2510.15438
2•m-hodges•37m ago•0 comments

Current Game and Season Materials (First Tech Challenge 2025-2026)

https://ftc-resources.firstinspires.org/ftc/game
1•dustfinger•38m ago•0 comments

AI-Driven Development Life Cycle: Reimagining Software Engineering

https://aws.amazon.com/blogs/devops/ai-driven-development-life-cycle/
1•asasidh•41m ago•0 comments

Building Secure OTA Updates for ESP32 over BLE with Rust – Harry Gill

https://gill.net.in/posts/building-secure-ota-updates-for-esp32-over-ble-with-rust/
1•mygnu•44m ago•0 comments

Do you think a job seekers front product a bad idea?

1•madeye7•44m ago•0 comments

Tesla Europe registrations drop 36% in November

https://www.automotiveworld.com/news/tesla-europe-registrations-drop-36-in-november/
21•randycupertino•44m ago•2 comments

I've been sleeping on Chinese models

https://kylenessen.com/ive-been-sleeping-on-chinese-models/
2•kylenessen•47m ago•1 comments

A Cosmic Offense: Elias Canetti's contest against death

https://www.commonwealmagazine.org/cosmic-offense
2•diodorus•48m ago•0 comments

Show HN: Cut the Crap – A meritocratic community for builders

https://www.youtube.com/watch?v=i2xdJ5ISoTI
1•shrutisingh18•49m ago•0 comments

Ask HN: Please suggest a smart watch that can be customized

4•VladVladikoff•49m ago•2 comments

Copywriters reveal how AI has decimated their industry

https://simonwillison.net/2025/Dec/14/copywriters-reveal-how-ai-has-decimated-their-industry/
1•abdelhousni•49m ago•0 comments