frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: Rampart – Open-source firewall for AI agents (v0.8)

https://rampart.sh/
2•trevxr•1h ago

Comments

trevxr•1h ago
Hi HN, I posted Rampart here a few weeks ago. Since then it's gone from v0.1 to v0.8.6 with some substantial changes, so I wanted to share an update.

Rampart is a policy engine that sits between AI coding agents (Claude Code, Codex, Cursor, Cline, OpenClaw etc.) and your operating system. Every shell command, file operation, and MCP tool call gets evaluated against your rules before it executes. Denied actions never run.

What's new since last time:

- Response scanning: blocks credentials (AWS keys, SSH private keys, GitHub tokens) from entering the agent's context window. This is the gap most people miss: your .env file is inside your project folder, so directory sandboxing doesn't help. Rampart catches the secret in the tool response before the agent ever sees it.

- Temporary rules: `rampart allow "docker build " --for 1h` expires automatically. `--once` for single use. Useful when you need to unblock something without permanently weakening your policy.

-Policy from audit: `rampart init --from-audit` watches what your agent does in monitor mode and generates a policy to match. Easier than writing rules by hand.

- MCP proxy: `rampart mcp -- npx @server` enforces policy on any MCP server. `rampart mcp scan` auto-generates deny-by-default policy from a server's tool definitions.

- Native integrations: one-command setup for Claude Code (PreToolUse hooks), Codex (LD_PRELOAD), or any agent (shell wrapping).

Architecture: single Go binary, YAML policies, <10µs per evaluation, hash-chained audit trail. Intercepts via native agent hooks, LD_PRELOAD, $SHELL wrapping, or MCP proxy depending on the agent.

Some interesting things we found while dogfooding: agent runtimes wrap commands in `/bin/bash -c`, which broke our glob-based command matching (fixed in v0.8.6). Claude Code's enterprise sandbox uses bubblewrap with `--unshare-net` but restores network via a Unix socket proxy bridge — Rampart's hooks fire before the sandbox, so they're complementary. And our own self-modification protection caught the agent trying to run `rampart allow` to weaken its own rules during development.

Apache 2.0, no dependencies, ~58k lines of Go. Happy to answer questions about the architecture or threat model.

IOA Core, an open-source governance kernel for AI workflows

1•OrchIntel•24s ago•0 comments

Side questions with /btw in Claude Code

https://code.claude.com/docs/en/interactive-mode
1•mfiguiere•1m ago•0 comments

Mathematics is undergoing the biggest change in its history

1•Stratoscope•1m ago•0 comments

SaaSpocalypse Now

https://hantverkskod.se/2026/03/01/saaspocalypse/
1•mosura•2m ago•0 comments

Classifying email providers of 2000 Swiss municipalities via DNS

https://mxmap.ch/
1•notmine1337•5m ago•0 comments

I Ching or Book of Changes

https://iching.r053.org/
1•tzury•5m ago•0 comments

I Got Root on Meta AI's Infrastructure Using a Chat Prompt

https://netguard24-7.com/blog/meta-ai-root
1•cybrdude•6m ago•0 comments

Chemists thought phosphorus had shown all its cards–until it surprised them

https://phys.org/news/2026-02-chemists-thought-phosphorus-shown-cards.html
1•PaulHoule•6m ago•0 comments

How to start coding with AI agents

https://www.paralect.com/academy/product-engineer/ai-agents-coding
1•igorkrasnik•7m ago•0 comments

Zero Point Energy

https://twitter.com/EagleworksSonny/status/2031128667019972616
1•Flere-Imsaho•8m ago•0 comments

Show HN: Repovex – GitHub repo health scores for your whole org

https://repovex.com
1•calminferno•14m ago•0 comments

Front End Memory Leaks: 500-Repo Static Analysis and 5-Scenario Benchmark Study

https://stackinsight.dev/blog/memory-leak-empirical-study/
1•nadis•17m ago•0 comments

Visual plasticity and exercise revisited: No evidence for a "cycling lane"

https://jov.arvojournals.org/article.aspx?articleid=2737222
2•amadeuspagel•19m ago•0 comments

Google and Tesla think we're managing the electrical grid all wrong

https://techcrunch.com/2026/03/10/google-and-tesla-think-were-managing-the-electrical-grid-all-wr...
1•jnord•19m ago•0 comments

I've no technical background, hope someone finds this interesting

https://github.com/aleflow420/rinoa
1•aleflow420•19m ago•0 comments

GLP-1 drugs push U.S. consumers toward spicy foods, lifting sauce makers

https://www.reuters.com/business/healthcare-pharmaceuticals/sauce-spice-makers-attract-deal-inter...
2•petethomas•19m ago•0 comments

Television and computer use and dementia risk in older adults

https://alz-journals.onlinelibrary.wiley.com/doi/10.1002/alz.71259
3•amadeuspagel•21m ago•0 comments

Modern Compiler Design: C Implementation Details [pdf] (2004)

https://www.cs.usfca.edu/~galles/compilerdesign/cimplementation.pdf
2•turtleyacht•21m ago•1 comments

Covenant-72B: Pre-Training a 72B LLM with Trustless Peers Over-the-Internet

https://twitter.com/tplr_ai/status/2031388295972929720
2•rzk•22m ago•0 comments

Dox with Grok

https://mattsayar.com/dox-with-grok/
2•ohjeez•24m ago•2 comments

Ask HN: What's your favorite "what would SWEs do in 1-3 year from now?"

1•itissid•27m ago•0 comments

The Situation: Thinking About Anthropic's Red Lines

https://www.lawfaremedia.org/article/the-situation--thinking-about-anthropic-s-red-lines
2•hn_acker•28m ago•0 comments

Military AI Policy by Contract: The Limits of Procurement as Governance

https://www.lawfaremedia.org/article/military-ai-policy-by-contract--the-limits-of-procurement-as...
2•hn_acker•29m ago•0 comments

Ask HN: How to "make it" as a newlygrad/junior?

2•kartoffelsaft•31m ago•1 comments

Credit Bureaus Are Leaving More Mistakes on Frustrated Consumers' Reports

https://www.propublica.org/article/credit-report-mistakes-cfpb-experian-transunion
5•hn_acker•33m ago•2 comments

They Feel Bugs Inside Them. Doctors Don't Know Why

https://www.nytimes.com/2026/03/09/opinion/diagnosis-delusional-infestation-bugs.html
3•bookofjoe•33m ago•1 comments

Enamored with Macy

https://addisoncrump.info/research/enamored-with-macy/
1•todsacerdoti•34m ago•0 comments

Treasure hunter freed after decade of refusing to reveal site of shipwreck gold

https://www.cbsnews.com/news/tommy-thompson-treasure-hunter-ship-of-gold-missing-coins-released-p...
3•rgovostes•37m ago•0 comments

Needle in the haystack: LLMs for vulnerability research

https://devansh.bearblog.dev/needle-in-the-haystack/
1•rzk•38m ago•1 comments

Universal vaccine against respiratory infections and allergens

https://med.stanford.edu/news/all-news/2026/02/universal-vaccine.html
26•phony-account•39m ago•9 comments