frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: EnforceAuth GA Launch

https://enforceauth.com/contact?inquiry=waitlist
1•EnforceAuthMark•1h ago
I’m Mark, founder of EnforceAuth. Over the last year my team and I have been working with banks, insurers and AI adopters to solve a persistent security problem: authorization is scattered and hard‑coded. Surveys show that ~70 % of enterprise apps still embed authorization logic in code enforceauth.com , misconfigurations account for more than half of reported security incidents enforceauth.com , and compliance teams spend 30–40 % of their time chasing incomplete audit trails enforceauth.com . Throw AI agents into the mix and the problem gets worse: identity sprawl and opaque decision‑making overwhelm legacy IAM enforceauth.com .

We built EnforceAuth to address this. It lets you write policy once and enforce it everywhere enforceauth.com : in microservices, data stores, SaaS platforms and AI agents. Under the hood we use Open Policy Agent (OPA) but add a distributed control plane, runtime evaluation and AI‑aware guardrails:

• Single policy engine: define Rego or YAML policies once and deploy them across your estate; migrate from Styra DAS/Enterprise OPA with no rewrites or downtime enforceauth.com .

• Real‑time decisions: our fabric evaluates each access request at the point of use, preventing stale permissions and configuration drift enforceauth.com .

• AI guardrails: treat AI agents as identities with attributes like trust_level and enforce guardrails based on risk; see the code in the top comment.

• Audit‑ready logging: every decision is signed and logged, turning compliance from a manual audit into an API enforceauth.com .

EnforceAuth runs on‑premises or in the cloud; you can deploy it as a control‑plane‑only service or with sidecar/SDKs depending on latency requirements. We’re releasing a free tier with 10k decisions/month and transparent paid plans for enterprises.

We’re excited to open our GA wait‑list to the HN community. If unified authorization and AI guardrails would make your life easier, join the wait‑list and let us know what you think. I’ll be here all day to answer questions and would love your feedback.

Comments

EnforceAuthMark•1h ago
Architecture & migration

Core components: EnforceAuth uses a distributed control plane that stores policies in Git and compiles them to WebAssembly. Sidecars or SDKs fetch compiled policies via gRPC and cache them locally. Decisions are evaluated in milliseconds and include context (identity, resource, action, environment). If the control plane is unreachable, sidecars keep enforcing the last known policy.

Migration: Existing OPA or Styra DAS policies can be imported directly enforceauth.com . Our migration layer mirrors requests to EnforceAuth while your current system stays in place; when you’re comfortable, flip traffic over and remove the old system. No rewrites required.

AI guardrails example

We model AI agents as identities with roles and attributes. Here’s a simple Rego example showing how we permit admin users or AI agents with a trust level above 2:

default allow = false

# Admins always allowed allow { input.user.role == "admin" }

# Role‑based permissions allow { some perm perm := data.permissions[input.user.role][_] perm.action == input.action perm.resource == input.resource }

# AI agent guardrail allow { input.agent != null input.agent.trust_level > 2 some perm perm := data.permissions[input.agent.role][_] perm.action == input.action perm.resource == input.resource }

Observability & integrations

All decisions are exported to Prometheus/OpenTelemetry. You can send logs to your SIEM or data lake for analytics. Our SDKs are available for Go, Python and Java; Rust and Node are on the roadmap.

Questions for the community

How are you approaching authorization for AI agents? Are you using OPA or home‑grown logic?

Would a gradual migration path help you adopt unified authorization?

What languages/frameworks should we prioritise for SDK support?

Thanks for reading; I’m keen to hear your experiences.

Michael Swanwick's "The Universe Box"

https://pluralistic.net/2026/02/03/the-last-days-of-old-night/
1•hn_acker•48s ago•0 comments

Show HN: RingBreak – Exercise Breaks with Your Nintendo Ring-Con on Mac

https://ringbreak.app
1•yoavfr•1m ago•0 comments

IBM Beam Spring: The Ultimate Retro Keyboard

https://www.rs-online.com/designspark/ibm-beam-spring-the-ultimate-retro-keyboard
1•rbanffy•3m ago•0 comments

You life is up to exponent

https://github.com/tambetvali/LaegnaAIBasics/tree/main/LabDepth.ai/Exponometer.py/Symbols.speak
1•tvali•3m ago•0 comments

Young adults report lower life satisfaction in Sweden

https://internationaljournalofwellbeing.org/index.php/ijow/article/view/6001/1299
2•late•4m ago•0 comments

Defining Safe Hardware Design [pdf]

https://people.csail.mit.edu/rachit/files/pubs/safe-hdls.pdf
3•rachitnigam•5m ago•0 comments

Elon Musk merges SpaceX with xAI (and X)

https://www.theverge.com/tech/872619/elon-musk-merges-spacex-with-xai-and-x
1•bookofjoe•5m ago•1 comments

Show HN: Octosphere, a tool to decentralise scientific publishing

https://octosphere.social/
2•crimsoneer•5m ago•0 comments

Show HN: VisiGrid CLI – Git-diff for financial reconciliation

https://visigrid.app
1•rdoneill•7m ago•1 comments

Veriphysics: The Treatise: III. The Political Failures

https://voxday.net/2026/02/03/veriphysics-the-treatise-002/
1•KqAmJQ7•7m ago•0 comments

Are LLM failures – including hallucination – structurally unavoidable? (RCC)

http://www.effacermonexistence.com/rcc-hn-1
1•noncentral•7m ago•2 comments

Official N8n AI Benchmark

https://n8n.io/ai-benchmark/
1•james2doyle•8m ago•1 comments

Show HN: I built "AI Wattpad" to eval LLMs on fiction

https://narrator.sh/llm-leaderboard
1•jauws•8m ago•0 comments

PeppyOS: A simpler alternative to ROS 2 for experimentation and production

https://peppy.bot
2•Ekami•10m ago•0 comments

Show HN: AI that calls businesses so you don't have to

https://www.thisispamela.com
2•marcuslima•11m ago•1 comments

Open Source Security in Spite of AI (Daniel Stenberg, Curl, FOSDEM'26)

https://daniel.haxx.se/blog/2026/02/03/open-source-security-in-spite-of-ai/
2•boegel•11m ago•0 comments

Ask HN: Is it possible to get a job in CS without a degree?

1•kumrayu•11m ago•3 comments

The Future of the Global Open-Source AI Ecosystem: From DeepSeek to AI+

https://huggingface.co/blog/huggingface/one-year-since-the-deepseek-moment-blog-3
1•myk-e•13m ago•0 comments

Deskmate: A local-first AI agent for executing real system actions

https://github.com/sarkar-ai-taken/deskmate
1•sarkarsaurabh27•14m ago•0 comments

New Benchmark for Child Safety: Grok is 2.5x worse than Claude

https://twitter.com/korabench/status/2018711354786607289
1•nallatamby•14m ago•0 comments

The Dependabot Proxy is now open source with an MIT license

https://github.blog/changelog/2026-02-03-the-dependabot-proxy-is-now-open-source-with-an-mit-lice...
1•tqpcharlie•16m ago•0 comments

Over 100 employees of Prudential Life Insurance behind ¥3.1B fraud

https://www.japantimes.co.jp/business/2026/01/16/companies/prudential-life-insurance-misconduct/
2•PaulHoule•17m ago•1 comments

iOS/macOS ScriptWidget – Create Widgets with JavaScript

https://www.xnu.app/scriptwidget
1•nkjoep•19m ago•0 comments

Show HN: 4todo – multi-workspace Eisenhower Matrix

https://4to.do
1•haoya•20m ago•0 comments

221 Cannon Road Is Not for Sale

https://fredbenenson.com/blog/2026/02/03/221-cannon-is-not-for-sale/
2•mecredis•21m ago•0 comments

QuantumMail – Zero-Knowledge, Quantum-Safe Email Encryption (Browser-Native)

1•mihirbommisetty•21m ago•0 comments

Builders Push 'Trump Homes' to Win Backing for a Million Houses

https://www.bloomberg.com/news/articles/2026-02-03/builders-push-trump-homes-to-win-backing-for-a...
1•thelastgallon•21m ago•0 comments

Network Stats for Q4 2025: Neocloud Traffic Trends

https://www.backblaze.com/blog/network-stats-for-q4-2025-neocloud-traffic-trends/
1•oavioklein•21m ago•0 comments

Taking AI Doom Seriously for 62 Minutes [video]

https://www.youtube.com/watch?v=Qg5QXY_qZuI
1•surprisetalk•23m ago•0 comments

Protect Human Subjects, Not Bureaucracy

https://ifp.org/protect-human-subjects-not-bureaucracy/
1•surprisetalk•23m ago•0 comments