frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Without RBAC for Skills and MCP, your org has root access to your company

https://www.sleuth.io/post/without-rbac-for-agent-skills-and-mcp-your-entire-organization-basically-has-root-access-to-your/
3•detkin•1h ago

Comments

FrankWilhoit•1h ago
In the typical medium-to-large company that has legacy implementations of a few decades' worth of processes, RBAC is absolutely infeasible. The legacy systems evolved to accommodate specific individuals who wore multiple hats, and now that those persons are gone, the processes that they left behind can only be worked on a cargo-cult basis.
detkin•1h ago
At some of the larger orgs that I've worked at each individual system had some level of RBAC. Often they would try to centralize around an Okta-style system, but the roles in there infrequently matched what was needed. In the places you are describing what have they done around security? Even without AI it sounds like they didn't have a feasible solution?

Multimodal Embedding and Reranker Models with Sentence Transformers

https://huggingface.co/blog/multimodal-sentence-transformers
1•gmays•1m ago•0 comments

Ukraine Tested Space-Launch Capabilities in Middle of War Twice

https://united24media.com/latest-news/ukraine-quietly-tested-space-launch-capabilities-in-middle-...
1•Teever•3m ago•0 comments

Show HN: I built a lightweight extension to simplify Gmail (free, local)

https://useapparent.com/
1•JaredCampbell•3m ago•1 comments

The Perils of an Over-Optimized Life

https://redeemingproductivity.com/on-over-optimizing-your-life/
3•jethronethro•4m ago•0 comments

Job intakes for home pros to give virtual project consultations

https://www.devrio.co
1•tuckero_boston•5m ago•1 comments

Transitive Robotics announces Transitive 2.0 open-source robotics framework

https://www.therobotreport.com/transitive-robotics-announces-transitive-2-0-open-source-robotics-...
1•chfritz•9m ago•0 comments

Mathematical Minimalism

https://www.johndcook.com/blog/2026/04/13/the-smallest-math-library/
1•chmaynard•10m ago•0 comments

I solved variable naming by making it someone else's problem

https://cursedvars.com/api
1•koychev•12m ago•0 comments

Show HN: Continual Learning with .md

https://github.com/SunAndClouds/ReadMe
1•wenhan_zhou•13m ago•0 comments

Running Ada Lovelace's program to calculate Bernoulli numbers

https://enigmaticcode.wordpress.com/2015/09/24/running-the-first-program/
1•fanf2•13m ago•0 comments

Twelve Graphs That Explain the State of AI in 2026

https://spectrum.ieee.org/state-of-ai-index-2026
2•droidjj•14m ago•0 comments

Show HN: Beautiful Clickable Demos

https://demoday.work
1•emilanker•15m ago•0 comments

Hiro Is Joining OpenAI

https://hirofinance.com/
3•davidgomes•15m ago•2 comments

Show HN: YouTube and Apple Podcast Transcripts

https://www.appblit.com/scribe
1•ldenoue•15m ago•0 comments

Node.js just added its first (transitive) Rust dependency

https://github.com/nodejs/node/pull/61806
2•dzogchen•16m ago•0 comments

Zig 0.16 Milestone Completed

https://mastodon.social/@andrewrk/116398834389486744
5•praveer13•17m ago•1 comments

GitHub Stacked PRs

https://github.github.com/gh-stack/
46•ezekg•19m ago•24 comments

A more realistic way to think about index investing

https://quantitativecuriosity.substack.com/p/stock-market-investing-from-a-normal
1•arjungup740•21m ago•1 comments

CISA's own website doesn't support post-quantum cryptography yet

https://hawksley.dev/blog/need-for-post-quantum-cryptography/
2•ethanhawksley•22m ago•0 comments

Ascending into the Realm of Japanese Charts

https://www.chartography.net/p/ascending-into-the-realm-of-japanese
3•speckx•26m ago•0 comments

There is no escape from Ashby's law (2020)

https://surfingcomplexity.blog/2020/01/18/there-is-no-escape-from-ashbys-law/
2•bobbiechen•28m ago•0 comments

QRAuth – Cryptographic verification layer for QR codes (seeking protocol review)

https://github.com/QRAuth-io/qrauth
1•aristech•28m ago•0 comments

The website paradox. Why less traffic means you need to invest more

https://www.ozgurtaskaya.com/p/the-website-paradox-why-less-traffic
3•jormungand•30m ago•2 comments

Pip-Audit

https://github.com/pypa/pip-audit
1•krunck•30m ago•1 comments

What If Big Bird Exploded in the Challenger Disaster? [video]

https://www.youtube.com/watch?v=vF-vrL0htbE
1•mghackerlady•31m ago•0 comments

Show HN: Deconflict – Open-source WiFi planner with physics-based walls

https://deconflict.pages.dev
1•s_e__a___n•31m ago•0 comments

HuggingFace Papers

https://huggingface.co/papers
1•pierre•32m ago•0 comments

Rabbithole – Generate websites as users visit them

https://isarabbithole.com/
1•ajbt200128•35m ago•0 comments

Attention, gamers: The FAA wants YOU to be an air traffic controller

https://www.theregister.com/2026/04/13/faa_gamers_air_traffic_control/
1•Logans_Run•36m ago•0 comments

Show HN: Lythonic – Compose Python functions into data-flow pipelines

https://github.com/walnutgeek/lythonic
1•walnutgeek•36m ago•0 comments