frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: APIsec MCP Audit – Audit what your AI agents can access

https://github.com/apisec-inc/mcp-audit
1•rajaramr7•1h ago
Hi HN — I built APIsec MCP Audit, an open source tool to audit Model Context Protocol (MCP) configurations used by AI agents.

Developers are connecting Claude, Cursor, and other assistants to APIs, databases, and internal systems via MCP. These configs grant agents real permissions, often without security oversight.

MCP Audit scans MCP configs and surfaces:

- Exposed credentials (keys, tokens, database URLs) - What APIs or tools an agent can call - High-risk capabilities (shell access, filesystem access, unverified sources)

It can also export results as a CycloneDX AI-BOM for governance and compliance.

Two ways to try it:

- CLI: pip install mcp-audit - Web demo: https://apisec-inc.github.io/mcp-audit/

Repo: https://github.com/apisec-inc/mcp-audit

We're a security company (APIsec) and built this after repeatedly finding secrets and over-permissioned agent configs during assessments. Would appreciate feedback — especially on risk scoring heuristics and what additional signals would be useful.

Vibe coding has a 12x cost

https://webmatrices.com/post/vibe-coding-has-a-12x-cost-problem-maintainers-are-done
1•dsr_•36s ago•0 comments

Type-Safe Eval in Grace

https://haskellforall.com/2026/01/typesafe-eval
2•todsacerdoti•42s ago•0 comments

Dalio warns that 'capital wars' could follow Trump's action

https://www.cnbc.com/2026/01/20/ray-dalio-fears-capital-wars-could-follow-trumps-actions-with-cou...
1•zerosizedweasle•1m ago•0 comments

Show HN: Talaria – Decompiling Hermes bytecode to pseudocode

https://github.com/moleium/talaria
1•moleium•4m ago•0 comments

I built a 2x faster lexer, then discovered I/O was the real bottleneck

https://modulovalue.com/blog/syscall-overhead-tar-gz-io-performance/
1•modulovalue•5m ago•0 comments

'AI' is a dick move, redux

https://www.baldurbjarnason.com/notes/2026/note-on-debating-llm-fans/
1•speckx•5m ago•0 comments

What I learned asking small teams how they handle recurring work

1•batels•6m ago•0 comments

Show HN: Agent Skills – 1k curated Claude Code skills from 60k+ GitHub skills

https://agent-skills.cc/
1•lixiaofei•7m ago•1 comments

Going Founder Mode on Cancer (2026)

https://centuryofbio.com/p/sid
2•leohonexus•8m ago•0 comments

Show HN: Picocode – a Rust based tiny Claude Code clone for any LLM, for fun

https://github.com/jondot/picocode
1•jondot•9m ago•0 comments

Kilo bets on context as the bridge between AI coding agents and chat apps

https://tessl.io/blog/kilo-bets-on-context-as-the-bridge-between-ai-coding-agents-and-chat-apps/
1•popey•9m ago•0 comments

Show HN: Preloop – An MCP proxy for human-in-the-loop tool approvals

https://preloop.ai
2•yconst•10m ago•0 comments

X/Twitter just Open-sourced their new Algorithm that powers your feed

https://www.opensourceprojects.dev/post/2566d4f1-3638-4553-8cc5-508e3c9ca236
2•XzetaU8•10m ago•1 comments

De-dollarization: Is the US dollar losing its dominance?

https://www.jpmorgan.com/insights/global-research/currencies/de-dollarization
3•andsoitis•11m ago•0 comments

Overriding template parameters; Typst design flaw?

https://forum.typst.app/t/overriding-template-parameters-missing-social-convention-or-typst-desig...
1•amai•11m ago•0 comments

Show HN: Cluster-Computing for Python Beginners

https://docs.burla.dev
1•pancakeguy•12m ago•0 comments

Show HN: CTxStudio – Visual prompt composer with live token counting

https://www.ctx.studio/
1•digitalegoai•12m ago•0 comments

The Jule Programming Language

https://jule.dev/
1•todsacerdoti•12m ago•0 comments

The BBN Fund – By Eric Gilliam – FreakTakes

https://www.freaktakes.com/p/the-bbn-fund
1•rbanffy•13m ago•0 comments

Show HN: Autonoma – Air-Gapped AI Code Engineer (L5 Autonomy)

https://vihaaninnovations.github.io/autonoma/
1•v_CodeSentinal•14m ago•1 comments

I built a pure Go PDF library with full XFA support

https://github.com/benedoc-inc/pdfer
1•b-g-d•14m ago•1 comments

The Successor to Research Unix Was Plan 9 from Bell Labs

https://www.theregister.com/2024/02/21/successor_to_unix_plan_9/
4•rbanffy•14m ago•1 comments

Show HN: An art ideas generator for artists and AI prompters

https://www.artideas.online
1•ZenCrafter•15m ago•1 comments

The Refiner's Age

https://twitter.com/andreaazzini/status/2013641612232970646
2•azzarcher•16m ago•0 comments

OpenAI Agent SDK for Java

https://github.com/bnbarak/openai-agent-sdk
2•bbnvail•16m ago•1 comments

US threats of tariffs on memory manufacturers arrive

https://www.windowscentral.com/hardware/howard-lutnick-memory-tariffs-micron
2•pjmlp•17m ago•0 comments

Year Old Vulnerability in Glibc

https://www.phoronix.com/news/Glibc-Security-Fix-For-1996-Bug
2•_tk_•17m ago•0 comments

Desktop Classic System – Spacial computing hearkening back to classic Mac OS

https://mycophobia.org/dcs/
2•PaulHoule•17m ago•1 comments

Nvidia Stock Crash Prediction

https://entropicthoughts.com/nvidia-stock-crash-prediction
3•todsacerdoti•18m ago•0 comments

The Only Two Markup Languages

https://www.gingerbill.org/article/2026/01/19/two-families-of-markup-languages/
2•birdculture•19m ago•0 comments