frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: Checking if financial processes can be bypassed before deployment

https://veilgovernance.com/
1•burlakovlm•8h ago
I’m trying to sanity check an idea with people who work with regulated systems.

In many organisations we have scanners for code, monitoring for systems, and multiple layers of controls and audit. But the business process itself is rarely checked for logical vulnerabilities before it goes live.

Processes like KYC onboarding, approvals, payments or compliance workflows are often designed in meetings and documented later. Over time more controls get added and monitoring improves, but the underlying process logic is rarely tested.

Which raises a simple question: can this process be bypassed?

I started experimenting with describing processes as state machines and running static checks on them. Things like reachability, missing review steps, irreversible actions without compensation, and similar structural issues.

The idea is to detect what you might call "business process vulnerabilities by design" before the process is deployed.

The page explains the concept and shows a small prototype. The prototype lets you describe a process as a state machine and run automated checks against rule sets (for example operational risk or resilience rules).

What I’m mainly trying to understand is whether this is actually a real problem in practice.

For people working in fintech, banking, risk or operations:

Do process bypasses or design gaps show up in real systems? How are new processes usually reviewed before they go live? Where do things tend to break down? Paper: veilgovernance.com/research/missing-first-line-of-defence

Comments

burlakovlm•8h ago
Happy to hear how people deal with this in practice. Curious whether process design issues show up during audits or incident investigations.

Every Coen Brothers Movie, Ranked

https://www.insidehook.com/film/every-coen-brothers-movie-ranked
1•RickJWagner•1m ago•1 comments

AI Has Amnesia. You're Paying. Blame the Architecture

https://solonai.com/grantai/essays/ai-amnesia
1•grant-ai•1m ago•0 comments

Where Are China's A.I. Doomers?

https://www.nytimes.com/2026/03/04/world/asia/china-ai-enthusiasm.html
1•bookofjoe•2m ago•1 comments

Parse, Don't Guess

https://event-driven.io/en/parse_dont_guess/
1•porada•2m ago•0 comments

Flock vs. FOIA: The Suppression Manual

https://haveibeenflocked.com/news/flock-vs-foia
1•wayathr0w•3m ago•1 comments

Managerial Abuse (1988)

https://developer.apple.com/library/archive/technotes/ov/ov_08.html#//apple_ref/doc/uid/DTS10002606
1•slugs19•3m ago•0 comments

Mahatma Gandhi's Approach to Environmental Sustainability

https://evs.institute/environment-and-society/gandhi-approach-environmental-sustainability/
1•methuselah_in•4m ago•0 comments

Version control and full session capture are table stakes

https://lexifina.com/blog/version-control-and-full-session-capture-are-table-stakes
1•alansaber•4m ago•0 comments

Nintendo Sues U.S. Government for Tariff Refunds

https://www.scribd.com/document/1008639172/Nintendo-Sues-U-S-Government-For-Tariff-Refunds
2•coloneltcb•7m ago•0 comments

X Users Find Their Real Names Are Being Googled in Israel

https://www.mintpressnews.com/x-users-find-their-real-names-are-being-googled-in-israel-after-usi...
7•upofadown•12m ago•0 comments

Periodic Labs

https://periodic.com/
2•tomnicholas1•12m ago•0 comments

Stop Registration Spam with Identity Pre-Verification

https://fusionauth.io/blog/identity-pre-verification
1•mooreds•13m ago•0 comments

HelloAI: Honest leaderboard of the current top frontier models

https://helloai.com/
1•HelloAi•14m ago•0 comments

China's CO2 emissions hit Q1 record high after 4% rise in early 2023 (2023)

https://www.carbonbrief.org/analysis-chinas-co2-emissions-hit-q1-record-high-after-4-rise-in-earl...
1•tlogan•14m ago•1 comments

The Shady World of IP Leasing

https://acid.vegas/blog/the-shady-world-of-ip-leasing/
2•alibarber•17m ago•0 comments

Long-term support for Linux releases gets a new lease on life

https://thenewstack.io/long-term-support-for-linux-releases-gets-a-new-lease-on-life/
1•CrankyBear•19m ago•1 comments

Best API Documentation Tools

https://www.jamdesk.com/blog/best-api-documentation-tools
1•gbourne1•20m ago•0 comments

The UAW Is Leading the Push for Green Jobs in California

https://jacobin.com/2026/02/uaw-green-jobs-california-union/
1•PaulHoule•21m ago•0 comments

Utah's online porn tax proposal poses a major threat to civil liberties

https://www.techdirt.com/2026/03/06/utahs-proposal-to-tax-online-pornography-is-a-civil-liberties...
3•speckx•21m ago•1 comments

Show HN: How to Catch Documentation Drift with Claude Code and GitHub Actions

https://dosu.dev/blog/how-to-catch-documentation-drift-claude-code-github-actions
1•onlydole•23m ago•0 comments

Runtime observability and policy enforcement for AI coding agents

https://www.oculisecurity.com/
1•rellaElla•23m ago•0 comments

Wine 11.4 – Run Windows Applications on Linux, BSD, Solaris and macOS

https://www.winehq.org/announce/11.4
1•neustradamus•24m ago•0 comments

BlackRock $26B Private Credit Fund Limits Withdrawals

https://www.bloomberg.com/news/articles/2026-03-06/blackrock-s-26-billion-private-credit-fund-lim...
3•greesil•24m ago•1 comments

Dracarys

https://dracarys.robertborghesi.is/
2•darmensdf•24m ago•0 comments

Project Operational Autonomy: our agent-to-agent-future

https://pebblebed.com/blog/operational-autonomy
1•kmavm•24m ago•0 comments

China's 792M kWh compressed air energy station now operational

https://interestingengineering.com/energy/china-largest-compressed-air-energy-station-world
2•pseudolus•27m ago•1 comments

Are there any companies who are anti-AI?

1•anti-ai-dev•29m ago•1 comments

The Worst Acquisition in History, Again

https://www.profgmedia.com/p/the-worst-acquisition-in-history
3•JumpCrisscross•29m ago•0 comments

OpenPawz Conductor Protocol

https://github.com/OpenPawz/openpawz/blob/main/reference/conductor-protocol.mdx
1•gotham64•31m ago•1 comments

Show HN: Unread, turns your unread newsletters into a daily podcast

https://app.unread.live
1•benfosterdev•31m ago•0 comments