frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

I built a Git firewall because I'm terrified of my own AI agents

https://github.com/Cocabadger/saferun-api
1•cocabadger•1h ago

Comments

cocabadger•1h ago
Hi HN, OP here.

I’m a Product Marketing Manager, not a professional engineer. I started 'vibe-coding' product hypotheses using Claude and Gemini to validate ideas fast.

But I quickly ran into a problem: I gave my AI agents too much freedom. In the heat of the moment, I’d rely on them to 'fix' a merge conflict, click 'Apply', and then watch in horror as they force-pushed broken history.

I realized a terrifying irony: I needed a safety layer against the very tools enabling me to build.

So I built SafeRun. It’s a middleware (CLI + Git Hooks) that intercepts destructive commands locally. It uses the Git `reference-transaction` hook (kernel level) to catch operations even if the agent tries to bypass shell aliases.

How it works:

1. Agent tries `git push --force` or `git reset --hard`

2. SafeRun blocks it locally (Zero-latency, no data sent)

3. It sends a Slack notification

4. You physically click "Approve" to let it pass

The client is Open Source (MIT) and works offline. The cloud part (for Slack alerts) is currently in public beta.

Since I'm a PMM "larping" as a dev—I’d really appreciate if you could roast my code/architecture. Did I miss any obvious security holes?

Repo: https://github.com/Cocabadger/saferun-api Site: https://saferun-landing.vercel.app

Andrej Karpathy (Inspired) Skills

https://github.com/forrestchang/andrej-karpathy-skills
1•sdoering•1m ago•0 comments

Dollar falls after Trump comments

https://www.axios.com/2026/01/27/trump-dollar-currency-yen
2•doener•2m ago•0 comments

CDC vaccination databases have been frozen under RFK Jr

https://arstechnica.com/health/2026/01/rfk-jr-lets-cdc-vaccination-data-rot-dozens-of-databases-f...
2•doener•3m ago•0 comments

Roo Code 3.44 Release Updates – Worktrees (new) – Parallel tool calls

https://docs.roocode.com/update-notes/v3.44
1•hrudolph•8m ago•1 comments

Six Psychological Flaws That Keep the Gifted from Living Up to Their Gift

https://www.themarginalian.org/2026/01/24/diseases-of-the-will-cajal-advice-for-a-young-investiga...
1•cainxinth•11m ago•0 comments

EU and Brazil conclude agreements on free and safe data flows

https://ec.europa.eu/commission/presscorner/home/en
2•marcuschong•15m ago•0 comments

Show HN: A simple, transaction-safe SQL migration tool

https://github.com/samueldurantes/siquil
1•samueldurante•15m ago•0 comments

Building multi AI awareness in AI group chats

https://cochat.ai/building-multi-ai-awareness-how-cochat-enables-ai-models-to-coexist-in-group-co...
1•intheleantime•16m ago•0 comments

CVE-2026-23993: JWT authentication bypass in HarbourJwt via "unknown alg"

https://pentesterlab.com/blog/cve-2026-23993-harbourjwt-unknown-alg-jwt-bypass
1•lovedhacker•20m ago•0 comments

PostgreSQL on Kubernetes vs. VMs: A Technical Decision Guide

https://stormatics.tech/blogs/postgresql-on-kubernetes-vs-vms-a-technical-decision-guide
4•ioololaa•21m ago•0 comments

Clawdbot Remembers Everything

https://twitter.com/manthanguptaa/status/2015780646770323543
1•jxmorris12•22m ago•0 comments

Ask HN: Block short-form videos on home network?

1•mark13•23m ago•0 comments

Windows 11 KB5074109 update nukes Nvidia gaming performance and stability

https://www.notebookcheck.net/Windows-11-KB5074109-update-nukes-Nvidia-gaming-performance-and-sta...
3•akyuu•23m ago•0 comments

Gladys West, Unsung Figure in Development of GPS, Dies at 95

https://www.nytimes.com/2026/01/27/science/gladys-west-dead.html
1•donohoe•24m ago•0 comments

TikTok claimed bugs blocked anti-ICE videos, Epstein mentions; experts call BS

https://arstechnica.com/tech-policy/2026/01/tiktok-claimed-bugs-blocked-anti-ice-videos-epstein-m...
9•coloneltcb•25m ago•0 comments

Cursed Units 3: The British Empire Strikes Back [video]

https://www.youtube.com/watch?v=PWbfVcDcfFw
1•nativeit•26m ago•0 comments

Old Insurance Maps – Georeferencing Sanborn Fire Insurance Maps on Modern Maps

https://oldinsurancemaps.net/
1•lapetitejort•26m ago•1 comments

Show HN: An interactive jazz study guide

https://vladris.com/jazz-book/
1•vladris•27m ago•0 comments

Lightweight Transformer Architectures for Edge Devices in Real-Time Applications

https://arxiv.org/abs/2601.03290
1•PaulHoule•27m ago•0 comments

CVE-2026-22709: Critical Sandbox Escape in Vm2 Enables Arbitrary Code Execution

https://www.endorlabs.com/learn/cve-2026-22709-critical-sandbox-escape-in-vm2-enables-arbitrary-c...
2•gnabgib•28m ago•0 comments

The Plan Is to Make the Internet Worse. Forever. – Bastani and Doctorow [video]

https://www.youtube.com/watch?v=7wE8G-d7SnY
4•foofoo4u•28m ago•0 comments

TurboScribe

https://grokipedia.com/page/TurboScribe
1•leiferik•34m ago•0 comments

An LLM that's 7500× stupider

https://evanhahn.com/an-llm-thats-7500x-stupider/
1•EvanHahn•43m ago•1 comments

Tell HN: JumpCloud 2FA appears to be down

1•sgammon•43m ago•0 comments

Amazon to pay $309M to U.S. shoppers in settlement over returns

https://www.reuters.com/legal/government/amazon-pay-309-million-us-shoppers-settlement-over-retur...
7•TMWNN•44m ago•0 comments

Notes on Starting to Use Django

https://jvns.ca/blog/2026/01/27/some-notes-on-starting-to-use-django/
2•ingve•46m ago•0 comments

DeepSeek OCR2

https://huggingface.co/deepseek-ai/DeepSeek-OCR-2
1•chaosprint•47m ago•1 comments

Linux CLI for extracting archives inside a sandbox (alpha)

https://github.com/Chechelpo/Sandex
1•Chechelpo•47m ago•1 comments

Zero-ETL lakehouses for Postgres people

https://neon.com/blog/zero-etl-lakehouses-for-postgres-people
2•gmac•48m ago•0 comments

How I manage tasks in 2026

https://www.shubhro.com/how-manage-tasks-2026/
2•shbhrsaha•50m ago•0 comments