frontpage.
newsnewestaskshowjobs

Open Source @Github

fp.

Open in hackernews

AI DevOps Engine – bot posts PR fixes after testing in network-isolated Docker

https://github.com/landry-77/AI-DEVOPS-ENGINE
3•landry-77•1h ago

Comments

landry-77•1h ago
Hi HN, I built an AI DevOps pipeline that hooks into GitHub webhooks, generates patches via OpenRouter (GPT-4o-mini), runs them in network-isolated Docker sandboxes, and posts the validated fix as a PR comment for review. Key design decisions: 1. Zero data retention — code is scrubbed in-memory before inference, `data_collection: deny` on every LLM request 2. Air-gapped sandbox — patches execute in Docker with no network, 512MB RAM / 2 CPU hard limit 3. Secret redaction — AWS keys, GitHub tokens, DB creds are regex-stripped in memory before leaving the gateway 4. No auto-commit — bot only suggests fixes, you review and apply (enterprise requirement) 5. PostgreSQL RLS for tenant isolation — enforced at the database engine, not the ORM layer Everything runs locally via Docker Compose (8 containers). You only pay for LLM tokens. Stack: Node.js gateway → FastAPI brain → Celery workers → Redis → PostgreSQL → Django dashboard Would love feedback on the sandbox isolation model and whether the suggestion-only workflow matches your team's compliance needs.
mrhottakes•1h ago
A docker container that can be reached by the bot is not air-gapped. Words mean things.

LLM from Scratch: a small LLM running inside MIT's Scratch

https://github.com/Broyojo/llm_from_scratch
1•alexkranias•1m ago•0 comments

DOJ intervenes on behalf of xAI in data center gas turbine lawsuit

https://www.utilitydive.com/news/doj-intervenes-xai-data-center-gas-turbine-lawsuit/823267/
1•skolos•2m ago•0 comments

OpenClaw-memgpt – MemGPT's three-tier memory architecture as an OpenClaw plugin

https://github.com/xltvy/openclaw-memgpt
1•xltxy•2m ago•0 comments

Web-Based Indirect Prompt Injection Observed in the Wild

https://unit42.paloaltonetworks.com/ai-agent-prompt-injection/
1•wslh•3m ago•0 comments

The Promptware Kill Chain

https://arxiv.org/abs/2601.09625
1•wslh•4m ago•0 comments

Microspeak elaborated: Isn't escrow just a release candidate by another name?

https://devblogs.microsoft.com/oldnewthing/20260623-00/?p=112462
3•AndrewDucker•6m ago•0 comments

The Three AImigos versus the Magnificent Seven

https://www.ft.com/content/98582580-20ed-4205-9ef2-4d56657b0004
1•aanet•7m ago•1 comments

Nothing has killed my GTA 6 hype faster than locking a core part of its identity

https://www.pcgamer.com/games/action/nothing-has-killed-my-gta-6-hype-faster-than-locking-a-core-...
1•evo_9•7m ago•0 comments

Don't Put That PDF in Your Event

https://docs.eventsourcingdb.io/blog/2026/06/25/dont-put-that-pdf-in-your-event/
1•goloroden•9m ago•0 comments

LLMs and Performative Productivity

https://joshcollinsworth.com/blog/productivity
2•birdculture•11m ago•0 comments

Show HN: Catbath: Terminal-first, browser-curious, and extension-friendly editor

http://sekor.eu.org/catbath/
1•modinfo•11m ago•0 comments

Malicious AI 'Skills' on OpenClaw's ClawHub Marketplace Bypass Scanners

https://cyber.netsecops.io/articles/openclaws-skill-marketplace-and-the-emerging-ai-supply-chain-...
3•jaybode•12m ago•0 comments

Nobody Here Wants the Data Center: An Oral History

https://newrepublic.com/article/211363/ai-data-center-oral-history
2•speckx•12m ago•0 comments

German federal Microsoft spending hit €481M in 2025

https://www.heise.de/news/Bund-in-der-Abhaengigkeitsfalle-Kostenexplosion-bei-Microsoft-Lizenzen-...
1•logickkk1•13m ago•0 comments

A green unit test, a red CI, and a chown that raced a zsh lock file

https://inferhaven.com/blog/2026-06-18-building-haven-bench-in-the-open/
1•inferhaven•14m ago•0 comments

Colorado River's Dire Water Picture Expected to Hit Green River Ranchers Hard

https://cowboystatedaily.com/2026/06/23/colorado-rivers-dire-water-picture-expected-to-hit-green-...
3•Bender•14m ago•0 comments

Luck Surface Area

https://blog.danwald.me/luck-surface-area
3•danwald•16m ago•0 comments

Demesne, Zanzibar-style authz compiled to RLS

https://github.com/foir-io/demesne
2•mattblr•16m ago•0 comments

Medical diagnosis AIs can be tricked into telling whose data trained them

https://www.theregister.com/ai-and-ml/2026/06/24/medical-diagnosis-ais-can-be-tricked-into-tellin...
4•Bender•17m ago•0 comments

Show HN: Hacker News Job Salary Trends

https://hacker-job.com/trends
3•timqian•17m ago•0 comments

Mythos discovers 'Squidbleed,' a memory leak thats gone undetected since Clinton

https://www.theregister.com/security/2026/06/23/mythos-discovers-squidbleed-a-memory-leak-thats-g...
2•Bender•18m ago•0 comments

GNU C/C++ Vector Extensions

https://gcc.gnu.org/onlinedocs/gcc/Vector-Extensions.html
2•pillmillipedes•19m ago•1 comments

Open Robotics Is Maturing

https://digitalcxo.com/article/open-robotics-is-maturing/
2•CrankyBear•19m ago•0 comments

Attaky – The ultimate modular ecosystem for everyone

https://attaky.com/
2•LorenDB•20m ago•0 comments

Drastically Reduce Stress with a Work Shutdown Ritual – Cal Newport

https://calnewport.com/drastically-reduce-stress-with-a-work-shutdown-ritual/
2•ankitg12•23m ago•0 comments

The AI Data Centre Legal Case That Could Eradicate Civil Rights

https://read.misalignedmag.com/the-ai-data-centre-legal-case-that-could-eradicate-civil-rights-c2...
3•lcubw•23m ago•0 comments

Why big AI labs are hiring so many philosophers

https://www.economist.com/science-and-technology/2026/06/24/why-big-ai-labs-are-hiring-so-many-ph...
6•Brajeshwar•23m ago•0 comments

What does your eval measure?

https://shash42.substack.com/p/what-does-your-benchmark-actually
2•shash42•24m ago•0 comments

Show HN: Tuip – CLI / TUI for checking SaaS vendors' statuses

https://github.com/ikan31/tuip
2•ahme•25m ago•0 comments

Loops Burn Tokens

https://www.wheresyoured.at/cargo-culture/
3•felixdoerp•26m ago•0 comments