frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: Rampart – Open-source security for Claude and AI agents in YOLO mode

https://github.com/peg/rampart
2•cl4p•1h ago
I've been running an AI agent 24/7 on my home lab through OpenClaw — k3s cluster management, shell commands, config edits, all unsupervised. I could see what the agent was running, but had no way to stop a bad command before it executed. So I built Rampart.

How it works: you write a YAML policy that says what's allowed, denied, or flagged. Rampart evaluates every tool call against that policy before it runs. Here's what a policy looks like:

  - rm -rf / → denied
  - sudo anything → logged for review
  - curl, wget → logged for review
  - git push, go build, normal dev commands → allowed
  - cat ~/.ssh/id_rsa → denied
Everything gets written to a hash-chained audit trail. You can watch it live with "rampart watch" or generate HTML reports with "rampart report".

Setup for Claude Code takes one command: "rampart setup claude-code". It installs hooks that intercept every Bash command, file read, and file write before execution. Blocked commands never run — Claude sees an error and moves on.

Setup for OpenClaw agents is also one command: "rampart setup openclaw". Works on Linux and macOS.

Also works as a shell wrapper for any agent ("rampart wrap"), an MCP protocol proxy ("rampart mcp"), or an HTTP API that agent platforms can consult before executing anything ("rampart serve").

Go, ~14K lines, Apache 2.0, zero runtime deps. Policy eval takes under 20 microseconds.

I'd love feedback on what policies you'd want out of the box and what integrations matter most.

Git-cola: The highly caffeinated Git GUI

https://github.com/git-cola/git-cola
1•PaulHoule•1m ago•0 comments

Claude Code Is Being Dumbed Down

https://symmetrybreak.ing/blog/claude-code-is-being-dumbed-down/
2•WXLCKNO•2m ago•0 comments

Pool and VDEV Topology for Proxmox Workloads

https://app-na3.hubspot.com/settings/342733928/tracking-urls
1•klarainc•2m ago•0 comments

Show HN: Project Genesis – A Bio-Mimetic Digital Organism Using LSM

https://github.com/JeevanJoshi2061/Project-Genesis-LSM
1•Jeevan_Joshi•3m ago•0 comments

I Don't Want My Terminal to Be a Platform

https://log.tiulp.in/notes/breaking-up-with-warp
1•tiulpin•3m ago•0 comments

Show HN: NOOR – A Sovereign AI developed on a smartphone under siege in Yemen

https://paragraph.com/@0x4fd3729a4fedf54a74b73d93f7f775a1ef520cec/noor-the-sovereign-ai-truth-fro...
1•suffering•3m ago•0 comments

Google releases beta of Android 17, adopts a continous developer release plan

https://techcrunch.com/2026/02/11/google-releases-the-first-beta-of-android-17-adopts-a-continous...
1•tambourine_man•5m ago•0 comments

Illness Is Rampant Among Children Trapped in ICE's Jail in Texas

https://truthout.org/articles/children-are-getting-sick-inside-ices-massive-family-jail-in-texas/
1•wahnfrieden•5m ago•0 comments

Can Anyone Monetize OpenClaw?

https://getlago.substack.com/p/can-anyone-actually-monetize-openclaw
1•FinnLobsien•6m ago•0 comments

Outcome Engineering

https://o16g.com/
1•purplerabbit•8m ago•0 comments

Show HN: Praetorian Guard – Free AI tool to self-evaluate your CV (educational)

https://github.com/simonesan-afk/CV-Praetorian-Guard
1•saimonsan•8m ago•0 comments

Show HN: HelixNotes – UpNote-inspired local-first Markdown notes in Rust

https://helixnotes.com
1•ArkHost•10m ago•0 comments

Puffy Alps

https://ladenhauf.com/blog/puffy-alps/
1•snzro•12m ago•0 comments

GitHub: AnchorID is a minimal attribution resolver for people

https://github.com/lowerpower/AnchorID
1•mycal•12m ago•0 comments

Trusting Trust in the Fediverse

https://evilmaid.net/blog/trusting-trust-fediverse/index.html
1•airhangerf15•13m ago•0 comments

Show HN: Vibe Coded Math Games

https://eruci.com/a.html
1•eruci•13m ago•0 comments

Show HN: Nomad Tracker, a local-first iOS app to track visas and tax residency

https://www.thenomadtracker.com
1•gotzonza•13m ago•1 comments

Show HN: Privacy-first iOS Keyboard with above-key predictions

https://www.klava.space/
1•shimku•14m ago•0 comments

Love in the stacks of the LOC

https://blogs.loc.gov/music/2026/02/love-in-the-stacks/
1•chmaynard•15m ago•0 comments

Show HN: A CLI tool to simplify and automate common VPS configuration tasks

https://the-ultimate-tool-for-configuring-vps.wiar8.com/
1•Wiar8•16m ago•0 comments

Property-based testing is about to rule the (software) world

https://tybug.dev/specs/
2•tybug•16m ago•0 comments

Why Colonize Space: The Need for Frontier

https://medium.com/@darkft/why-colonize-space-the-need-for-frontier-dd03c443a2f3
1•d_silin•17m ago•0 comments

Hydra Joins Supabase

https://supabase.com/blog/hydra-joins-supabase
3•rottencupcakes•17m ago•0 comments

CBP Signs Clearview AI Deal to Use Face Recognition for 'Tactical Targeting'

https://www.wired.com/story/cbp-signs-clearview-ai-deal-to-use-face-recognition-for-tactical-targ...
2•laurex•18m ago•0 comments

A piece of code that causes LLVM Flang to generate NaN/Inf randomly

https://github.com/llvm/llvm-project/issues/180957
1•zaikunzhang•19m ago•1 comments

Airspace closure followed spat over drone-related tests and balloon shoot-down

https://www.cbsnews.com/news/airspace-closure-followed-spat-over-drone-related-tests-and-party-ba...
2•mhb•19m ago•0 comments

NetNewsWire Turns 23

https://netnewswire.blog/2026/02/11/netnewswire-turns.html
2•robin_reala•20m ago•0 comments

MolmoSpaces: A large-scale, open platform and benchmark for embodied AI research

https://allenai.org/blog/molmospaces
1•maxloh•20m ago•1 comments

Show HN: Stop Getting Rejected by ATS – I Built a Fix

https://arzunocv.site
1•common_creator•21m ago•1 comments

Spotify-fs Store any file inside Spotify tracks

https://github.com/Xelckis/spotify-fs
2•delduca•24m ago•0 comments