frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: Sandbox agents without losing your dev environment

https://github.com/wrr/drop
1•mixedbit•1h ago
Drop is a Linux sandboxing tool with a focus on a productive local workflow. It isolates programs and agents while preserving as many aspects of your work environment as possible.

The workflow is inspired by Python's virtualenv: create an environment, enter it, work normally - but with enforced sandboxing. To create a new Drop environment and run a sandboxed shell you simply:

  alice@zax:~/project$ drop init
  Drop environment created with config at /home/alice/.config/drop/home-alice-project.toml
  alice@zax:~/project$ drop run
  (drop) alice@zax:~/project$ cat ~/.ssh/id_rsa
  cat: /home/alice/.ssh/id_rsa: No such file or directory
Each Drop environments gets its own, isolated and easily disposable home dir. To ensure the sandbox matches your actual work environment, selected files and dirs from your original home dir are mounted in the sandbox, most of them read-only.

The need for a tool like Drop had been with me for a long time. I felt uneasy installing and running out-of-distro programs with huge dependency trees and no isolation. On the other hand I dreaded the naked root@b0fecb:/# Docker shell. The main thing that makes Docker great for deploying software - a reproducible, minimal environment - gets in the way of productive development work: tools are missing from a container; config files and environment variables are all unavailable.

The last straw that made me start building Drop was LLM agents. To work well - compile code, run tests, analyze git logs - agents need access to tools installed on the machine. But giving agents unrestricted access is so clearly risky, that almost every discussion on agentic workflows includes a rant about a lack of sandboxing.

Thanks, I'd love to hear what you think.

Hawkeye – a flight recorder for AI agents

https://www.npmjs.com/package/hawkeye-ai
1•mklamine•1m ago•0 comments

An open-source workflow for producing a personalized mRNA cancer vaccine

https://philfung.github.io/openvaxx/
1•dsr12•3m ago•0 comments

Show HN: ChameleonDB – A database toolkit with auditable schema versioning

https://www.chameleondb.dev/
1•ChameleonDB•5m ago•0 comments

Typed-fetch – Go-style error handling for fetch in TypeScript

https://github.com/pbpeterson/typed-fetch
1•pbpeterson•9m ago•1 comments

Daily coding model rankings by use case

https://howsthemodel.com/
1•keyserrr•13m ago•0 comments

Putting the 'lord' in 'landlord': US churches step up to build housing

https://www.theguardian.com/society/2026/mar/29/yigby-churches-build-housing-amid-shortage
1•rawgabbit•14m ago•0 comments

I built IDE-layer policy enforcement for Claude Code/Cursor agents

https://www.oculisecurity.com/
1•rellaElla•17m ago•0 comments

Ask HN: Why Isn't Everything Public?

3•silexia•18m ago•2 comments

Under-utilized features in Claude Code

https://twitter.com/bcherny/status/2038454336355999749
1•tzury•19m ago•0 comments

uops.info Update: Emerald Rapids, Meteor Lake, Arrow Lake, and Zen 5

https://uops.info/table.html
1•matt_d•21m ago•0 comments

SpaceX: For Mars or Wars?

https://i.postimg.cc/mR4RyVdx/UXTx-D2t.jpg
2•transmartian•21m ago•2 comments

How to Build Reddit Karma Fast

https://karmabuilder.xyz/blog/how-to-build-reddit-karma-fast
1•m00dy•29m ago•0 comments

Who's Gonna Carry the Boats?

https://apps.apple.com/us/app/quit-all-break-every-habit/id6760978934
1•apoorvdarshan•30m ago•1 comments

App Defaults in March 2026

https://brainbaking.com/post/2026/03/app-defaults-march-2026/
1•Brajeshwar•35m ago•0 comments

Gorgeous DIY camera looks straight out of Severance

https://www.dpreview.com/articles/9055612016/saturnix-diy-camera-alien-sci-fi-raspberry-pi
1•swq115•38m ago•0 comments

MXFP8 GEMM: Up to 99% of cuBLAS Performance Using CUDA and PTX

https://danielvegamyhre.github.io/2026/03/29/mxfp8-gemm.html
1•matt_d•42m ago•0 comments

We Need Servers – Lots of Servers

https://www.nextplatform.com/compute/2026/03/26/we-need-servers-lots-of-servers/5211678
1•jonbaer•45m ago•0 comments

Everyone Hates iPhone Autocorrect. An Update Fixes One of the Biggest Problems

https://www.wsj.com/tech/apple-iphone-autocorrect-update-7659d618
4•RyanShook•46m ago•2 comments

Searching for the Perfect Sync

https://sunshine-jones.com/searching-for-the-perfect-sync/
1•lightyrs•50m ago•1 comments

Volvo Infotainment Glitches Spark Class Action Lawsuit

https://www.autoblog.com/news/volvo-infotainment-glitches-spark-major-class-action-lawsuit
2•carefree-bob•54m ago•1 comments

Epic Lays Off Employee with Terminal Brain Cancer Who Cant Get LifeInsurance Now

https://kotaku.com/epic-games-layoffs-fortnite-brain-cancer-2000682941
2•Jimmc414•55m ago•1 comments

Show HN: React-Rewrite – Figma for localhost that directly edits your codebase

https://github.com/donghaxkim/react-rewrite
1•donghaxkim•57m ago•0 comments

The Socially Acceptable Use of AI in Business

https://kellblog.com/2026/03/29/on-the-socially-acceptable-use-of-ai-in-business/
1•doppp•1h ago•0 comments

AI-powered migrations from Postgres to ClickHouse

https://clickhouse.com/blog/ai-powered-migraiton-from-postgres-to-clickhouse-with-fiveonefour
2•tosh•1h ago•0 comments

SparkID: Fast, sortable, compact unique IDs

https://www.youssefm.com/posts/sparkid
2•pinkbeanz•1h ago•1 comments

GPT 5.4 sucks at front end

1•apoorvdarshan•1h ago•0 comments

Portable MicroNeedle Fractional RF Machine

https://www.sanhelasers.com/products/portable-fractional-microneedle-rf-machine/
1•SANHE•1h ago•0 comments

The Sudden Fall of OpenAI's Most Hyped Product Since ChatGPT

https://www.wsj.com/tech/ai/the-sudden-fall-of-openais-most-hyped-product-since-chatgpt-64c730c9
14•fortran77•1h ago•18 comments

Pretext

https://simonwillison.net/2026/Mar/29/pretext/
9•lumpa•1h ago•1 comments

How to Recognise Kentucky on a Map

https://mammothmemory.net/geography/usa/states-of-america/how-to-remember-where-the-american-stat...
2•kamaraju•1h ago•0 comments