frontpage.
newsnewestaskshowjobs

Open Source @Github

fp.

Open in hackernews

Show HN: AVP – an agent can't leak a secret it never had

https://github.com/inflightsec/agent-vault-proxy
3•radku•1h ago
A process can't leak a secret it never had.

Shai-hulud, prompt-injection - you name it. They cannot steal what your agent (or an process) don't have.

I run coding agents (Claude Code, Codex) on my own machines most of the day. Every one of them wants real API keys in env and I was scratching my head for the last few months how to contain it.

The usual answer to this is a firewall. I don't buy it. A firewall tries to contain a secret the process is still holding, and the rules are painful to maintain.

AVP gives the agent a placeholder and injects the real value at the last moment, on the wire: ``` # the agent's env holds only a placeholder STRIPE_API_KEY=avp-placeholder # agent sends: Authorization: Bearer avp-placeholder # AVP forwards upstream: Authorization: Bearer sk_live_...real... ```

Keep your passwords in your vault where they belong. AVP initially relies on Bitwarden as a secret manager. It's MIT licensed.

Appreciate any feedback.

OpenAI's June 2026 Report on Malicious Uses of AI [pdf]

https://cdn.openai.com/pdf/96b559fa-c165-4575-805d-e636909e2f78/June-2026-Threat-Report.pdf
1•jklmnopqrstuvw•1m ago•0 comments

User claims Fable one-shots a watch movement CAD model, didn't validate geometry

https://twitter.com/quanghuynt14/status/2064509430650065278
1•carodgers•1m ago•1 comments

Hobnob – Local meeting notes, transcribes and summarizes on-device

https://github.com/emberscribe/hobnob
1•polemos•4m ago•0 comments

Kickbacks: An ad marketplace for coding agent spinners

https://twitter.com/andrewmccalip/status/2065049432652189933
1•kabirgoel•4m ago•0 comments

Bitsy

https://bitsy.org/
1•tosh•5m ago•0 comments

Orphaned AUR packages are being targeted with an infostealer

https://gaysex.cloud/notes/andaxow7itfn05x9
1•jordigh•6m ago•0 comments

Trying to fix complicated problems

https://blog.griffens.net/blog/trying-to-fix-complicated-problems/
1•ngriffiths•6m ago•0 comments

Musk's SpaceX prices record $75B IPO at $135 a share

https://www.reuters.com/world/musks-spacex-prices-record-75-billion-ipo-135-share-2026-06-11/
1•TechTechTech•7m ago•0 comments

Show HN: Boo – screen-style terminal multiplexer built on libghostty

https://github.com/coder/boo
1•kylecarbs•9m ago•0 comments

Show HN: ZeroFS – Make S3 your primary storage

https://www.zerofs.net/
2•Eikon•10m ago•0 comments

Rust, C++, and the Tradeoffs Behind Safe Low-Level Code

https://serokell.io/blog/rust-c-and-the-tradeoffs-behind-safe-low-level-code-interview-with-nikit...
3•ibobev•10m ago•0 comments

Subterranean fungi networks more than 100 quadrillion km in length

https://www.theguardian.com/science/2026/jun/11/arbuscular-mycorrhizal-fungi-plant-life-climate-g...
2•tosh•10m ago•0 comments

Every LLM Tool Call Needs an Output Budget

https://www.axamy.com/blog/tool-budget
1•jhonovich•10m ago•0 comments

Sasquatch 'sightings' reignite fervour and scepticism about ape-like beast

https://www.theguardian.com/world/2026/jun/11/sasquatch-bigfoot-sightings-fervour-scepticism-ape-...
2•tosh•10m ago•0 comments

Section 702 Surveillance Reaches Friday Deadline. Why "Going Dark" Is a Myth

https://reclaimthenet.org/section-702-surveillance-friday-deadline-going-dark-myth
1•anonymousiam•13m ago•0 comments

Made an 82-0 style game for wrestling

https://5starbooker.com/
1•AndyNemmity•14m ago•1 comments

Superficial Beliefs in LLM Decision-Making

https://arxiv.org/abs/2606.11016
1•MediaSquirrel•15m ago•0 comments

Writing code vs. shipping code [pdf]

https://www.nber.org/system/files/working_papers/w35275/w35275.pdf
1•mustaphah•15m ago•0 comments

Army commissions second cohort of tech executives

https://www.army.mil/article/293173/army_commissions_second_cohort_of_tech_executives_into_execut...
1•sbuccini•15m ago•0 comments

SpaceX raises $75B in its IPO, making Elon Musk the first trillionaire

https://www.axios.com/2026/06/11/spacex-ipo-prices-75-billion
5•chakintosh•15m ago•0 comments

MCP tools groups. How Datadog proved the pattern

https://www.speakeasy.com/blog/mcp-tool-filtering-datadog
1•simplesagar•15m ago•0 comments

Cooling in Space

https://guille.site/posts/space-cooling/
2•LolWolf•18m ago•0 comments

Montir – The Beli for Movies

https://apps.apple.com/us/app/montir/id6776378113
1•michaelahn•18m ago•1 comments

He Hacked Teslas for Elon Musk. Now He's Launching a $100M AI Cyber Agent

https://www.forbes.com/sites/thomasbrewster/2026/06/10/elon-musk-favorite-hacker-launches-100-mil...
9•MistyMouse•18m ago•0 comments

An interactive tour to the terrific technical debt of Arabic typography

https://lr0.org/blog/p/arabic/
2•ghd_•19m ago•0 comments

Learning a regular language by inferring a DFA with the TTT algorithm

https://rahul.gopinath.org/post/2026/06/09/ttt-grammar-inference/
1•fanf2•19m ago•0 comments

Diabetes org apologizes for ejecting scientists over criticism of Trump

https://arstechnica.com/health/2026/06/diabetes-org-apologizes-for-ejecting-scientists-over-criti...
2•leephillips•21m ago•0 comments

Playing with Payphones

https://www.theguardian.com/society/2026/jun/12/payphones-phone-booths-free-calls-australia-resur...
1•mopoke•21m ago•0 comments

3D necroprinting: Leveraging biotic material as the nozzle for 3D printing

https://www.science.org/doi/10.1126/sciadv.adw9953
1•oidar•21m ago•0 comments

"Regulate AI? And lose our edge?"

https://deep.liveblog365.com/en/index-en.html?post=283
2•TonyBorlini•23m ago•0 comments