frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Keycard – inject API keys into subprocesses, never touch shell env

https://www.keycard.studio/
19•jijane•2h ago

Comments

absoluteunit1•1h ago
Is this similar to what Infisical does?
serious_angel•58m ago
Thank you! Hurray! A yet another brand new credentials "local-first" cloud with very transparent and intuitive brand name, that is going to be "responsible" for "decades" (hopefully years) of storing and maintaining someone's credentials with undisclosed infrastructure, legal terms in cases of the credentials leaked during a bug (e.g. at E2EE/secure channel session), and no actual comparison stated between the current competitors, including DotEnv cloud service, BitWarden, 1Password, KeePass-based etc.!

No, sorry, I, nor anyone I know, would trust credentials to any organization with so little transparency and lack of guarantees, also considering audited alternatives.

Oh, and indeed, where is the key card? Is it in an ASCII art somewhere in documentation?

The design is nice, however, but... may I ask, how much non-AI work was done, if any?

Wicher•57m ago
I couldn't find the technique used above the fold (or a short way below).

Is this something more (and something more interesting) than just standard spawned process inheriting the parent process environment?

IOW is this actually injecting in the true sense of the word? Because that'd be interesting.

zemo•55m ago
Reads like it’s not copying the parent, it’s manually constructing the env dictionary to be passed to execve explicitly. I do this in one of my tools at work because developers were exfiltrating secrets and hand jamming them into .env files.
Wicher•48m ago
Yeah, so, it's not injecting? To inject something into X, X needs to exist. X does not exist yet when execve is set up.

I'm not being pedantic. I just want to read about injection when I'm promised injection :-) because that'd be technically interesting for me. Plainly calling execve isn't so much, I have the manpage here already :-)

chrismarlow9•36m ago
You're not alone. I was hoping for the same.
zemo•57m ago
> Password manager > No CLI injection.

reminds me of the 1password cli:

https://developer.1password.com/docs/cli/reference/commands/...

na4ma4•20m ago
For dev-first environments, I just wrote a simple wrapper for 1password <https://github.com/na4ma4/1password-direnv-tool>, although I found their application SDK to be quite broken (will stop working after a few hours for no idea why), I didn't write it for anyone other than me, so it works fine for my use case :).

I find it super easy to just make a document, and enter key-val details as attributes.

cr125rider•11m ago
Every LLM site looks like Vercel which is such a shame.

Copilot for Research

https://www.feynman.is
1•djinn•36s ago•0 comments

Stop Using Ollama

https://sleepingrobots.com/dreams/stop-using-ollama/
1•Zetaphor•3m ago•1 comments

Iran war's global energy crisis sharpens China's clean tech advantage

https://english.kyodonews.net/articles/-/74214
1•anigbrowl•8m ago•0 comments

China tests deep-sea electro-hydrostatic actuator that can cut undersea cables

https://www.tomshardware.com/tech-industry/china-tests-deep-sea-electro-hydrostatic-actuator-that...
1•hkmaxpro•8m ago•0 comments

Scaling Managed Agents: Decoupling the Brain from the Hands \ Anthropic

https://www.anthropic.com/engineering/managed-agents
1•duck•12m ago•0 comments

Spec Driven Development Isn't Waterfall

https://brooker.co.za/blog/2026/04/09/waterfall-vs-spec.html
1•dhruv3006•13m ago•0 comments

An Autonomous RL Agent Methodology for Dynamic Web UI Testing in a BDD Framework

https://publications.eai.eu/index.php/airo/article/view/8895
1•alihassaanmug•14m ago•0 comments

British Attitudes to Economic Growth

https://iea.org.uk/attitudes-to-economic-growth
1•mellosouls•14m ago•1 comments

Video: Are They Lying to You About Nuclear Energy?

https://www.youtube.com/watch?v=cxDd3Whl_9s
2•drob518•18m ago•0 comments

Interface of Capitulation: A Black-Box Audit of Instructed Dishonesty in LLMs

https://github.com/phobetor-ops/interface-of-capitulation
2•jotacesarmp•19m ago•1 comments

Using Claude Code: Session Management and 1M Context

https://twitter.com/trq212/status/2044548257058328723
2•dsr12•20m ago•0 comments

Ultraprocessed foods may hurt muscle health

https://www.nbcnews.com/health/health-news/link-ultraprocessed-foods-muscle-health-rcna331623
2•gmays•20m ago•0 comments

Florida surgeon charged with killing man after removing liver instead of spleen

https://arstechnica.com/health/2026/04/florida-surgeon-charged-with-killing-man-after-removing-li...
6•canucker2016•24m ago•0 comments

The simple geometry behind any road

https://sandboxspirit.com/blog/simple-geometry-of-roads/
1•azhenley•28m ago•0 comments

Eternal November – new influx of users, and why it's better than the last one

https://sfconservancy.org/blog/2026/apr/15/eternal-november-generative-ai-llm/
2•pabs3•30m ago•0 comments

Geminis "Priority Inference" tier: 75-100% more expensive, same or worse latency

https://twitter.com/Justiniansli/status/2044610407487173076
2•YounElh•30m ago•1 comments

C++26: Structured Bindings in Conditions

https://www.sandordargo.com/blog/2026/04/15/cpp26-structured-bindings-condition
1•jandeboevrie•32m ago•0 comments

I Will Never Respect a Website

https://www.wheresyoured.at/i-will-never-respect-a-website/
1•farmerbb•37m ago•0 comments

Anthropic co-founder confirms the company briefed White House on Mythos

https://techcrunch.com/2026/04/14/anthropic-co-founder-confirms-the-company-briefed-the-trump-adm...
3•gmays•41m ago•2 comments

Mesh LLM

https://github.com/Mesh-LLM/mesh-llm
3•oldfuture•42m ago•0 comments

Build the right thing and the money will follow

https://mikefisher.substack.com/p/build-the-right-thing
2•gpi•45m ago•0 comments

Enhancing Developer Workflow with Rovo Dev and Notifications

https://www.atlassian.com/blog/developer/developer-workflow-rovo-dev-notifications
2•foxh0und•46m ago•0 comments

Show HN: Themery – A theme engine that compiles one palette to every major IDE

https://www.themery.dev/
2•Tiagopeter•47m ago•0 comments

Modern Common Lisp with FSet

https://fset.common-lisp.dev/Modern-CL/Top_html/index.html
6•signa11•48m ago•0 comments

Hacking MCP Servers in AI Systems – The Rug Pull: Tool Changes After Approval

https://medium.com/@Koukyosyumei/hacking-mcp-servers-in-ai-systems-the-rug-pull-tool-changes-afte...
2•syumei•53m ago•0 comments

AI Meeting recorder that runs on your Mac

https://quietly.fastclick.ai
3•saadn92•59m ago•0 comments

Speeding up GPU kernels by 38% with a multi-agent system

https://cursor.com/blog/multi-agent-kernels
2•gmays•1h ago•0 comments

DESI Completes Planned 3D Map of the Universe

https://newscenter.lbl.gov/2026/04/15/desi-completes-planned-3d-map-of-the-universe-and-continues...
2•revicon•1h ago•0 comments

Ask HN: We dont need a programming language now?

2•zameermfm•1h ago•4 comments

Tailscale-rs: Official Rust library for embedding Tailscale

https://tailscale.com/blog/tailscale-rs-rust-tsnet-library-preview
2•phantomathkg•1h ago•0 comments