frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: Tswap–Yubikey-backed secret injection for IaC and AI-assisted workflows

https://github.com/stevedcc/TokenSwap
1•stevedcc•1h ago
I built tswap after noticing that Claude Code, while genuinely useful for managing a Kubernetes cluster, was pulling plaintext secrets from every manifest it touched. I wanted the AI to be able to do its job without ever seeing the actual values.

tswap keeps secrets in an AES-encrypted vault file on disk. The decryption key is derived from a YubiKey via HMAC challenge-response. At init you pair two YubiKeys — either unlocks the vault, so you have no single point of hardware failure.

Config files use a comment-based placeholder that keeps them valid YAML:

    stringData:
      DB_PASSWORD: # tswap: db-password
Deployment is a pipe:

    tswap apply values.yaml | helm upgrade myapp ./chart -f -
The privilege split is the key design decision: `apply`, `run`, and `check` need no elevation (AI agent gets these). `get`, `list`, `delete`, and `export` require sudo/admin (human gets these). The AI can deploy; it can't read or enumerate secrets.

Other features: burn tracking for rotation, `redact` for stripping values from logs, `check` for pre-deploy validation, `export`/`import` for vault migration.

Single binary, no daemon. Tested on Linux, macOS, and Windows.

https://github.com/stevedcc/TokenSwap

Show HN: I Built Imgur for Markdown

https://www.jotbird.com
1•mcone•2m ago•0 comments

Show HN: Citatra – Opensource AI visibility tracker for Google AI Overview

https://github.com/Citatra/Citatra
1•Citatra•3m ago•0 comments

OpenAI uncovers Chinese intimidation operation through official's use of ChatGPT

https://www.cnn.com/2026/02/25/politics/chatgpt-china-intimidation-operation
3•cwwc•4m ago•0 comments

The Eschatian Hypothesis

https://arxiv.org/abs/2512.09970
1•bediger4000•5m ago•0 comments

Startup idea validator – Get brutal verdict

https://dontbuild.it/
1•hackerbo•7m ago•0 comments

Banks weigh risks of agentic AI in payment systems

https://www.thebanker.com/content/28823d12-c0e8-462f-aca9-6e9dca0a64ef
1•petethomas•8m ago•0 comments

We Audited the Security of 7 Open-Source AI Agents – Here Is What We Found

https://grith.ai/blog/security-audit-seven-ai-agents
2•edf13•8m ago•0 comments

The Purges Within China's Military Are Even Deeper Than You Think

https://chinapower.csis.org/china-pla-military-purges/
2•u1hcw9nx•8m ago•0 comments

Sandboxed or bare metal? Statistics and study on AI agent deployment

https://internetwarte.eu/agentsetup
4•hexsec•9m ago•1 comments

Sneak Peek at the Redesigned Stack Overflow

https://stackoverflow.blog/2026/02/25/your-sneak-peek-at-the-redesigned-stack-overflow/
1•Igrom•9m ago•0 comments

The AI Is the Computer

https://twitter.com/AravSrinivas/status/2026710957272207490
1•gmays•10m ago•0 comments

BMW deploys the humanoid robot AEON in production sites in Germany

https://robotics.hexagon.com/bmw-deploys-aeon-hexagon-robotics-humanoid/
1•l0b0•10m ago•0 comments

Scavenger genius Shigeru Ban: building cathedrals and quake shelters with paper

https://www.theguardian.com/artanddesign/2026/feb/17/shigeru-ban-architect-cathedrals-quake-shelt...
2•PaulHoule•10m ago•0 comments

Anonymous Authentication: Creating access tokens for guest accounts

https://github.com/zitadel/zitadel-guest-accounts
1•ffo•10m ago•0 comments

Open Source in the Age of AI

https://john.onolan.org/open-source-in-the-age-of-ai/
2•vinhnx•12m ago•0 comments

Experts sound alarm after ChatGPT Health fails to recognise medical emergencies

https://www.theguardian.com/technology/2026/feb/26/chatgpt-health-fails-recognise-medical-emergen...
10•simonebrunozzi•12m ago•2 comments

Pakistan's defense minister says that there is an 'open war' with Afghanistan

https://apnews.com/article/afghanistan-pakistan-airstrikes-open-war-98927b79ee9ef5741bf0804956d3c2e6
2•speckx•14m ago•0 comments

Show HN: Let your OpenClaw find you clients

https://clawhub.ai/faalbane/easy-email-finder
2•faalbane•14m ago•0 comments

My Month Using Claude Code

https://matthewtejo.substack.com/p/my-month-using-claude-code
1•mtejo•15m ago•0 comments

Show HN: Pmpt-CLI – from one-off AI prompts to reproducible decision logs

https://pmptwiki.com
1•raunplaymore•15m ago•1 comments

I gave Claude free time after client work – it asked for a blog

https://placingstones.dev/posts/001-how-this-started/
1•hamoudydev•15m ago•2 comments

Show HN: Browser extension that takes you to the HN discussion for current page

https://github.com/wong2/hn-jump
1•wonderfuly•15m ago•0 comments

We gave terabytes of CI logs to an LLM

https://www.mendral.com/blog/llms-are-good-at-sql
5•shad42•16m ago•1 comments

Show HN: Code Architecture Visualization

https://app.tangleguard.com/
1•jaads•16m ago•0 comments

FlyTrap disables autonomous targeting drones with an umbrella

https://www.heise.de/en/news/FlyTrap-disables-autonomous-targeting-drones-with-an-umbrella-111927...
2•i-con•18m ago•1 comments

Show HN: Pitch An App – Crowdsourced app ideas with voting and revenue sharing

https://www.pitchanapp.com
2•eibrahim•19m ago•0 comments

Open source calculator firmware DB48X forbids CA/CO use due to age verification

https://github.com/c3d/db48x/commit/7819972b641ac808d46c54d3f5d1df70d706d286
2•iamnothere•19m ago•0 comments

Show HN: Can you hack my agent, but in real-time with friends?

https://alec.is/hack-my-agent/
1•arm32•22m ago•0 comments

Any Swiss devs found a "cheap" way to acces Banking APIs for a small project?

2•darktoto•23m ago•0 comments

Have your cake and decompress it too

https://spiraldb.com/post/cascading-compression-with-btrblocks
1•emschwartz•24m ago•0 comments