frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: Tfstate-audit – search/diff Terraform state history (S3/GCS/Azure/HCP)

https://github.com/BetaFold3/tfstate-audit
1•rngacc•1h ago

Comments

rngacc•1h ago
Hi HN. I built tfstate-audit (solo) to solve a recurring problem at work: during audits/key rotations we needed to answer "where did this credential/resource come from, and when did it first appear?" In practice, that info is often buried in Terraform state history, and digging through object versions manually is painful.

(Some teammates didn't even realize how much valuable information gets stored in Terraform state. It's basically a time machine for your infrastructure, if you can query it.)

tfstate-audit is local-first: it builds a local SQLite index and runs entirely on your machine. It's read-only (only lists/downloads historical versions) with redaction on by default, and no telemetry.

It lets you search across attributes/outputs/metadata, view a git-log-like timeline, diff two versions, and generate "advise" output + an optional Markdown evidence pack. It supports S3, GCS, Azure Blob Storage, HCP Terraform, and file://.

Quick start:

  go install github.com/BetaFold3/tfstate-audit/cmd/tfstate-audit@latest
  tfstate-audit index --source s3://bucket/path/to/state.tfstate --since 2025-01-01T00:00:00Z --limit-per-source 50
  tfstate-audit search --query 'attr.value~=^AKIA OR attr.value~=^ASIA' --group-by source
Would love feedback: What's your current workflow for answering "when did this resource/secret first appear in state"? Curious if others hit this during audits or incident response.

At Davos, tech CEOs laid out their vision for AI's world domination

https://www.theguardian.com/technology/2026/jan/27/tech-ceos-ai-world-domination-davos
1•andsoitis•4m ago•0 comments

US to send ICE agents to Winter Olympics, prompting Italian anger

https://www.bbc.com/news/articles/c5y29xzjdzvo
5•tacheiordache•5m ago•0 comments

Stop screwing around with agent orchestration, your bottleneck is validation

https://sibylline.dev/articles/2026-01-27-stop-orchestrating-and-start-validating/
1•CuriouslyC•5m ago•0 comments

Show HN: Nichestarter – Stop guessing what to build. Find validated pain points

https://www.nichestarter.ai/
2•shujip•5m ago•0 comments

CPython Internals Explained

https://github.com/zpoint/CPython-Internals
2•yufiz•8m ago•0 comments

The Law of Imposter Systems

https://zenodo.org/records/18383284
1•takko_the_boss•9m ago•0 comments

NDL: Simplifying Local Development for Distributed Systems

https://nuewframe.dev/blog/introducing-ndl-simplifying-distributed-systems-local-development/
2•wrabadi•9m ago•0 comments

The age of Pump and Dump software

https://tautvilas.medium.com/software-pump-and-dump-c8a9a73d313b
3•brisky•10m ago•0 comments

Chatuino: A Feature-Rich TUI Twitch IRC Client

https://github.com/julez-dev/chatuino
2•julezdev•10m ago•0 comments

Ask HN: Where's the actual pain in early-stage medical AI startups?

1•ml_visoft•12m ago•0 comments

I stopped using dependencies and started generating code

https://www.amazingcto.com/audience-of-one-apps/
2•KingOfCoders•12m ago•0 comments

Italians furious over deployment of ICE to bolster US security at Olympics

https://www.cnn.com/2026/01/27/europe/italy-ice-agents-security-olympics-intl
23•rawgabbit•13m ago•1 comments

Show HN: CUGA – Configurable Generalist Agent (HuggingFace Live Demo)

https://huggingface.co/spaces/ibm-research/cuga-agent
1•asaf_adi•14m ago•2 comments

Hit21 v1.9

https://apps.apple.com/us/app/hit21-blackjack-game/id6740510784
1•pompeii•15m ago•1 comments

Show HN: We Built the 1. EU-Sovereignty Audit for Websites

https://lightwaves.io/en/eu-audit/
9•cmkr•15m ago•1 comments

Show HN: Terminal style start page for bookmarks and open tabs

https://home-page.io/welcome/
1•britojosepha•16m ago•0 comments

I built a C++ runtime with immutable objects and no GIL

1•gamarino•17m ago•1 comments

Realism vs. style in AI image models (lessons from building a wallpaper app)

https://tallpaper.app
1•bored-developer•18m ago•1 comments

Not One Penny

https://scottsumner.substack.com/p/not-one-penny
2•RickJWagner•22m ago•1 comments

Show HN: IOPS Profiler – Jupyter magic to measure I/O operations per second

https://github.com/lincc-frameworks/iops-profiler
2•mtauraso•23m ago•1 comments

Feeds of New EBooks

https://www.gutenberg.org/ebooks/feeds.html
2•carlosjobim•24m ago•0 comments

Vibe Coding Is Free – Cleanup Won't Be

https://codesmash.dev/vibe-is-free-cleanup-wont-be
3•codesmash•25m ago•3 comments

Ancient infection disabled gene in chimp brains that remains expressed in humans

https://www.thetransmitter.org/evolution/viral-remnant-in-chimpanzees-silences-brain-gene-humans-...
4•jakewins•26m ago•0 comments

I quit tech today, warning to junior and mid-level devs

https://old.reddit.com/r/nairobitechies/comments/1qml2xr/i_quit_tech_today_warning_to_junior_and_...
4•nomilk•26m ago•0 comments

Show HN: WhyFi – Figure out why your Wi-Fi is bad and fix it

https://whyfi.network/
3•drpancake•26m ago•0 comments

Doom in the Terminal

https://github.com/wojciech-graj/doom-ascii
2•nateb2022•27m ago•0 comments

Show HN: Build Web Automations via Demonstration

https://www.notte.cc/launch-week-i/demonstrate-mode
5•ogandreakiro•27m ago•0 comments

Show HN: Lichess.el – Play Lichess Inside Emacs

https://github.com/tmythicator/lichess.el
2•atimcha•27m ago•1 comments

Digital Excommunication

https://pgaleone.eu/europe/2026/01/27/digital-excommunication/
1•me2too•28m ago•0 comments

Show HN: MonsterWriter – An Overleaf Alternative with a Better Free Plan [video]

https://www.youtube.com/watch?v=feWZByHoViw
1•WolfOliver•29m ago•0 comments