frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

What if CLIs exposed machine-readable contracts for AI agents?

https://github.com/sonde-sh/sonde
1•valentinprgnd•3h ago

Comments

valentinprgnd•3h ago
This project was inspired by a tweet from Guillermo Rauch referencing the article “Rewrite your CLI for AI agents”.

The idea is simple: most CLIs were designed for humans reading terminal output. AI agents interacting with tools need something closer to a machine-readable contract.

Sonde is an early experiment exploring a small manifest that lets tools describe their commands, inputs and outputs so agents can discover and execute them without scraping terminal output.

This is still very early and I'm mainly interested in feedback from people building developer tooling or agent workflows.

rodchalski•7m ago
The capability-declaration problem is real and underserved. Most tools are designed for human cognition, not machine consumption.

Worth separating two distinct contract questions though:

1. Capability contract: what can this tool do? (what Sonde addresses — commands, inputs, outputs, discovery) 2. Authorization contract: what is this agent allowed to do with this tool, in this context?

The first contract lives in the tool. The second can't. Even with a perfect manifest, an agent that reads it learns what's possible — not what's permitted for this specific task.

The manifest helps the agent construct a valid request. The enforcement layer decides whether to grant it. Those are separate surfaces, and conflating them is where a lot of agent security debt accumulates.

Concrete example: an agent reads the manifest for a filesystem tool, discovers `delete_file`, constructs a valid call with correct parameters. The manifest says it's a valid call. What stops the agent from running it on a file outside its working scope? That can't be encoded in the manifest — it requires external enforcement that knows the task context, not just the tool schema.

Sonde looks like a clean foundation for the capability side. Curious if you're thinking about the authorization layer as a next step.

Big Sleep Tracker: Google Project Zero + Google DeepMind find security bugs

https://issuetracker.google.com/savedsearches/7155917
1•guessmyname•2m ago•0 comments

Suggestion Regarding References to the Prophet Muhammad (Peace Be Upon Him)

1•naseerwafa•2m ago•0 comments

Show HN: Career AutoPilot – AI guidance for navigating your career

https://www.careerautopilot.ai
1•bvikasgupta•3m ago•0 comments

Can a wealthy family change the course of a deadly brain disease?

https://www.science.org/content/article/can-wealthy-family-change-course-deadly-brain-disease
1•Snoozus•6m ago•0 comments

Show HN: Contd makes interactive CLIs usable for agents in an async way

https://github.com/werifu/contd
1•wefchen•7m ago•0 comments

Hitting the High Notes (2005)

https://www.joelonsoftware.com/2005/07/25/hitting-the-high-notes/
1•benatkin•12m ago•0 comments

Show HN: What zero-intervention E2E test generation looks like

https://www.youtube.com/watch?v=G6mtaC15ocw
1•nadeem1•13m ago•0 comments

Neolab and Emerging AI Lab Tracker

https://cleverhack.com/neolab-and-emerging-ai-lab-tracker
1•jxmorris12•15m ago•0 comments

"Clinejection" Turned an AI Bot into a Supply Chain Attack

https://snyk.io/blog/cline-supply-chain-attack-prompt-injection-github-actions/
1•vismit2000•18m ago•0 comments

Show HN: Managed S3 exports for billing data (no AWS setup required)

https://flexprice.io/
3•manishfp•21m ago•0 comments

Coruna: The Mysterious Journey of a Powerful iOS Exploit Kit

https://cloud.google.com/blog/topics/threat-intelligence/coruna-powerful-ios-exploit-kit
1•mitchbob•23m ago•0 comments

Vibe Security Radar – Tracking the security cost of vibe coding

https://vibe-radar-ten.vercel.app
1•guessmyname•27m ago•0 comments

Spark Runner: Easily Automate Front End Tests

https://github.com/simonarthur/spark-runner/
1•chromaton•30m ago•1 comments

I built this privacy-focused analytics tool

1•webanalyzerapp•31m ago•0 comments

"Game Development in Eight Bits" by Kevin Zurawel (2021) [video]

https://www.youtube.com/watch?v=TPbroUDHG0s
1•vinhnx•32m ago•0 comments

open_slate: A Powerful and Private 2-in-1 Tablet

https://www.indiegogo.com/en/projects/braxtechnologies/open_slate
1•owenpalmer•33m ago•0 comments

Converting Binary Floating-Point Numbers to Shortest Decimal Strings

https://onlinelibrary.wiley.com/doi/10.1002/spe.70056
1•matt_d•35m ago•0 comments

The era of Doctor AI is here

https://www.axios.com/2026/03/06/ai-doctor-health-information-consumers
2•0in•36m ago•0 comments

Show HN: Context-compact – Summarize agent context instead of truncating it

https://github.com/HalfEmptyDrum/Context-Compactor
6•EmptyDrum•36m ago•2 comments

Coding Agents in Feb 2026

https://calv.info/agents-feb-2026
1•vinhnx•45m ago•0 comments

Calif. lawsuit accuses Meta of sending nude video from AI glasses to workers

https://www.sfgate.com/tech/article/meta-ai-glasses-lawsuit-21960004.php
2•bryan0•45m ago•0 comments

Anthropic and The Pentagon

https://www.schneier.com/blog/archives/2026/03/anthropic-and-the-pentagon.html
1•herbertl•45m ago•0 comments

Show HN: Crypto data API where AI agents pay per request with USDC (x402)

https://crypto-enrich.up.railway.app
1•psamala•50m ago•0 comments

The first AI counter surveillance app

https://play.google.com/store/apps/details?id=app.sentryrf&hl=en_US
2•vidoluc•51m ago•1 comments

Loop Conference Channel [YouTube]

https://www.youtube.com/channel/UC_QIfHvN9auy2CoOdSfMWDw
1•vinhnx•52m ago•0 comments

The Mystery of Asjo.org

https://acid.vegas/blog/the-mystery-of-asjo-org/
1•gzread•54m ago•0 comments

How College Admissions Officers Spot Over-Coached Applications

https://www.forbes.com/sites/christopherrim/2026/02/27/how-college-admissions-officers-spot-over-...
2•paulpauper•55m ago•0 comments

Our Hospice System Subverts the Point of Hospice Care

https://www.nytimes.com/2026/03/02/opinion/hospice-care.html
2•paulpauper•56m ago•0 comments

SEIU Delenda Est

https://www.astralcodexten.com/p/seiu-delenda-est
3•paulpauper•57m ago•0 comments

Tell HN: Azure Data Factory pipeline execution delays in East US 2

1•dwoldrich•58m ago•0 comments