frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: Armour – A secure stdio MCP proxy, written in Go

https://github.com/fuushyn/armour
15•devel12•1h ago
At my last company, we connected Claude Code and Cursor to almost all our internal services via MCP. It made the team incredibly fast, but we hit a wall: permissions.

If you give an agent "Read Only" access, it can’t actually fix anything. If you give it "Write" access, it’s only a matter of time before a hallucination or a bad prompt results in a deleted database or a nuked production bucket. We had a few "close calls" that convinced us that simply reducing IAM permissions makes agents useless.

I built Armour (https://github.com/fuushyn/armour) to solve this. It’s a stdio proxy for MCP servers that lets you stay "secure by default" without stripping the agent's capabilities.

How it works: Instead of connecting your IDE directly to an MCP server, you point it to Armour. It acts as a middleware layer where you can:

Register all tools in one place: A single proxy for all your internal MCPs.

Argument-level blocking: This is the core feature. You can allow an agent to use a tool like github, but block specific arguments like delete.

The goal is to move away from the "all-or-nothing" permission model. You should be able to trust an agent with a shell without worrying it will run rm -rf /.

Repo - https://github.com/fuushyn/armour

Comments

devel12•1h ago
If you’re using MCP/tool-using coding agents internally, how are you handling “blast radius”? Are you relying on IAM scoping, confirmation prompts, sandboxing, policy proxies, or something else?
mayank_sethi•1h ago
We kept hitting cases where read-only made agents useless, but write access was too risky. We ended up building a small stdio MCP proxy that lets us block dangerous operations at the argument level
kaushikasp•1h ago
this seems super interesting - would totally give it a try this week.
avilasha•36m ago
wohoo!

Collaborative editing with AI is hard

https://www.moment.dev/blog/collab-with-ai-is-hard
1•antics•2m ago•0 comments

Show HN: WhoDB CLI – Terminal database client (Golang) with local AI support

1•hkdeman•4m ago•0 comments

Hootsuite seeks business with ICE amid financial pressures

https://www.theglobeandmail.com/business/article-hootsuite-canada-vancouver-ice-social-media-cont...
1•corny•5m ago•1 comments

Stop Vibe Shipping Agents

1•exordex•7m ago•0 comments

Amazon CEO says Trump tariffs are driving prices up

https://www.axios.com/2026/01/20/amazon-prices-trump-tariffs-andy-jassy-davos
3•belter•7m ago•1 comments

My Meandering Path to Silver

https://www.campbellramble.ai/p/my-meandering-path-to-silver
1•surprisetalk•7m ago•0 comments

Got factory ruin. Now builds Nordic prefab homes with industrial precision [video]

https://www.youtube.com/watch?v=oxWXMInZm-g
1•surprisetalk•7m ago•0 comments

Guide to Retroarch, system, emulator, core, and ROM config files (2021)

https://www.raphkoster.com/about-raph/hobbies/emulation/guide-to-retroarch-system-emulator-core-a...
1•surprisetalk•8m ago•0 comments

Can you read 900 words per minute?

https://substack.com/@jameslucasit/note/c-202186114
3•Jun8•11m ago•1 comments

WildCAT3D: Appearance-Aware Multi-View Diffusion in the Wild

https://arxiv.org/abs/2506.13030
1•PaulHoule•11m ago•0 comments

Article on the History of Spot Instances: Analyzing Spot Instance Pricing Change

https://spot.rackspace.com/blogs/history-of-spot-instances
2•aleroawani•12m ago•0 comments

Show HN: NativeLine – Build native iOS apps through conversation (Swift only)

2•Nativeline•12m ago•1 comments

Ozempic Is Reshaping the Fast Food Industry

https://philippdubach.com/posts/ozempic-is-reshaping-the-fast-food-industry/
2•7777777phil•13m ago•0 comments

Show HN: Open-source tool for converting docs into .md and loading into Postgres

https://github.com/pgEdge/pgedge-docloader
1•pgedge_postgres•16m ago•0 comments

Monitor Hacker News Post in Realtime

https://www.timeplus.com/post/hacker-news-monitoring
1•gangtao•16m ago•0 comments

Shallow review of technical AI safety (2025)

https://www.lesswrong.com/posts/Wti4Wr7Cf5ma3FGWa/shallow-review-of-technical-ai-safety-2025-2
1•ofou•18m ago•0 comments

Show HN: Run Claude Code from WhatsApp

https://github.com/gokapso/claude-code-whatsapp
2•aamatte•19m ago•0 comments

The Repetition of China

https://madeinchinajournal.com/2025/10/15/the-repetition-of-china/
2•keiferski•20m ago•0 comments

Memory chip makers could face 100% tariffs unless increased US production

https://www.pcgamer.com/hardware/memory/spraying-kerosene-over-the-dram-inferno-us-commerce-secre...
3•perihelions•20m ago•1 comments

'It's Now Happening'–Urgent U.S. Dollar 'Collapse' Warning Issued

https://www.forbes.com/sites/digital-assets/2026/01/20/get-ready-us-dollar-collapse-warning-issue...
6•hypnot•21m ago•2 comments

A scammer's blueprint: How cybercriminals plot to rob a target in a week

https://www.reuters.com/graphics/SOUTHEASTASIA-SCAMS/MANUALS/klpyjlqelvg/
3•giuliomagnifico•21m ago•0 comments

Pipeline Parallelism in SGLang: Scaling to Million-Token Contexts and Beyond

https://lmsys.org/blog/2026-01-15-chunked-pipeline/
1•gmays•23m ago•0 comments

SWE-gen: Scaling SWE-bench task generation

https://github.com/abundant-ai/SWE-gen
3•coffeecoder123•25m ago•0 comments

Blog: Prototyping a Bloom filter-based erasure code in Zig

https://lumramabaja.com/posts/let-it-bloom-the-seeds-of-information-chaining-part-1/
1•irwt•26m ago•0 comments

Ads in ChatGPT, Why OpenAI Needs Ads, the Long Road to Instagram

https://stratechery.com/2026/ads-in-chatgpt-why-openai-needs-ads-the-long-road-to-instagram/
1•feross•27m ago•0 comments

Curl closing their bug bounty due to overload and abuse

https://github.com/curl/curl/pull/20312
4•troupo•27m ago•0 comments

The Battlefield Is Now Your Mind

https://gilpignol.substack.com/p/the-battlefield-is-now-your-mind
3•light_triad•27m ago•0 comments

File systems are here to stay

https://archil.com/post/why-file-systems-are-here-to-stay
2•mathewpregasen•29m ago•0 comments

Free Next.js Hosting

https://www.hyploy.co.uk/
2•hellosoftware•31m ago•0 comments

Claude Code as a Sales Guy

https://twitter.com/chaaai/status/2013530788676149755
4•chaitanyya•32m ago•1 comments