frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: We told OpenClaw to rm -rf and it failed successfully

https://securetrajectories.substack.com/p/openclaw-rm-rf-policy-as-code
1•joshdevon•1h ago

Comments

joshdevon•1h ago
As we all know, OpenClaw is awesome precisely because it gives us Simon Willison’s lethal trifecta: Access to private data, exposure to untrusted content, and the ability to externally communicate.

While extremely risky, it gives us a glimpse of the future we can have if we actually could trust agents.

To date, sandboxing (or buying mac-minis) has been the approach to reducing risk. While necessary, sandboxes also make the agent less useful because they ultimately contain and restrict the agent's helpful capabilities.

To wrangle OpenClaw, we took a complementary approach. Instead of just a perimeter, we built an open source OpenClaw extension that creates deterministic lanes for the agent using Cedar (AWS's policy as code language).

For example, we created a policy that forbids OpenClaw from using rm. We aren't trying to stop the LLM from thinking about deleting a file or stop it from being prompt injected to delete a file. Instead, the extension catches the tool call and blocks it before execution.

We are shipping with 3 policy packs (103 rules):

-Baseline pack: Protections for sudo, rm, credentials, etc.

-OpenClaw System Protection: Protects SOUL.md, identity files, etc.

-OWASP Agentic Pack: Based on the OWASP Top 10 for Agentic Applications.

Just like OpenClaw, this is experimental and hasn't been rigorously tested, so please don't use the extension to protect anything valuable or sensitive. We hope this project is a strong proof of concept for how we can put agents in risky situations and still trust them with deterministic rules.

For more details and the link to the repo, please check out our write-up. Would love to hear what others think of the approach and what policies you think would be useful to add.

Metals Volatility Is a Problem of Our Own Making

https://mathmeetsmoney.substack.com/p/metals-volatility-is-a-problem-of
1•nhp_fermi•1m ago•0 comments

F# 10

https://devblogs.microsoft.com/dotnet/introducing-fsharp-10/
2•tosh•2m ago•0 comments

Sublime Merge

https://www.sublimemerge.com/
1•tehnub•3m ago•0 comments

An AI bubble is not big tech's only worry

https://www.economist.com/finance-and-economics/2026/02/02/an-ai-bubble-is-not-big-techs-only-worry
1•thm•5m ago•0 comments

Show HN: Kepler - An Open-source text-to-SQL platform

https://github.com/stym06/kepler
1•stym06•6m ago•1 comments

F# Pattern Matching

https://learn.microsoft.com/en-us/dotnet/fsharp/language-reference/pattern-matching
1•tosh•7m ago•0 comments

Show HN: Clux – Simple session manager for Claude Code

1•zackham•7m ago•0 comments

The Integration Race: America's Advantage Will Be Decided on the Factory Floor

https://metistech.io/blog/the-integration-race
1•edverma2•8m ago•0 comments

The very strange downfall of Noam Chomsky

https://thecritic.co.uk/the-very-strange-downfall-of-noam-chomsky/
1•binning•8m ago•0 comments

Hermetic Bazel toolchain and ruleset for OpenAI's Codex coding agent

https://github.com/buildbuddy-io/rules_codex
1•siggi•8m ago•0 comments

WD Maps Out 100TB+ HDD Roadmap and Performance Breakthroughs for AI Storage

https://www.storagereview.com/news/wd-maps-out-100tb-hdd-roadmap-and-performance-breakthroughs-fo...
1•rbanffy•8m ago•0 comments

'It's an absolute bloodbath': Washington Post lays off workers

https://www.theguardian.com/media/2026/feb/04/washington-post-layoffs
3•mellosouls•9m ago•0 comments

How to design an SDK to handle $10B in transactions

https://blog.jacobstechtavern.com/p/revenuecat-sdk
1•jakey_bakey•9m ago•0 comments

Study: Used EVs currently offer car buyers lowest lifetime cost of ownership

https://techxplore.com/news/2026-01-evs-car-buyers-lowest-lifetime.html
1•PaulHoule•10m ago•0 comments

Woman wins malpractice suit over gender surgery as a minor

https://www.nytimes.com/2026/02/03/health/gender-surgery-malpractice-varian.html
1•binning•10m ago•0 comments

Tell HN: We Are in Recession Now

2•ewuhic•11m ago•0 comments

How Jeff Bezos Brought Down the Washington Post

https://www.newyorker.com/news/annals-of-communications/how-jeff-bezos-brought-down-the-washingto...
2•thm•12m ago•0 comments

A Record Player Gave Me the Idea to Revive the Home Computer

https://text.tchncs.de/r3nun0mxs9
1•doener•12m ago•0 comments

I studied the latest Epstein files. As a woman, this is what I felt

https://www.thetimes.com/life-style/celebrity/article/i-studied-the-latest-epstein-files-as-a-wom...
2•binning•13m ago•0 comments

I think I created a perfect product.

https://www.woroboro.com/privacy.html
2•kovaljubo•15m ago•2 comments

ICE urged to explain memo about collecting info on protesters

https://arstechnica.com/tech-policy/2026/02/capture-it-all-ice-urged-to-explain-memo-about-collec...
5•pseudolus•15m ago•0 comments

Intel's Xeon 600 Pushes Client Workstations into Server-Class Territory

https://www.storagereview.com/news/intels-xeon-600-pushes-client-workstations-into-server-class-t...
1•rbanffy•17m ago•0 comments

Show HN: UCP Checker – A manifest debugger for the agentic web

https://ucpchecker.com/extension
1•benjifisher•17m ago•2 comments

Show HN: Fast Sudoku solver that enumerates all solutions

https://sudoku-solver.piyochan.jp
1•math-hiyoko•18m ago•0 comments

A Trump 'Blockade' Is Stalling Wind and Solar Projects Nationwide

https://www.nytimes.com/2026/02/04/climate/wind-solar-projects.html
2•doener•20m ago•2 comments

Silver Star Airpower: Airmen and Guardians Take on Iran

https://www.airandspaceforces.com/article/silver-star-airpower-airmen-and-guardians-take-on-iran/
2•speckx•20m ago•0 comments

Does AI have human-level intelligence? The evidence is clear

https://www.nature.com/articles/d41586-026-00285-6#ref-CR8
1•fdeage•20m ago•0 comments

Manual on Uniform Traffic Control Devices for Streets and Highways

https://mutcd.fhwa.dot.gov/
1•mhb•21m ago•0 comments

Mappa – Fine-tune ANY multi-agent LLM systems end-to-end with AI coaches

2•junyuren•22m ago•2 comments

ReTerminal E1001

https://www.seeedstudio.com/reTerminal-E1001-p-6534.html
2•crummy•23m ago•1 comments