frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

A 26,000-year astronomical monument hidden in plain sight (2019)

https://longnow.org/ideas/the-26000-year-astronomical-monument-hidden-in-plain-sight/
311•mkmk•6h ago•65 comments

California is free of drought for the first time in 25 years

https://www.latimes.com/california/story/2026-01-09/california-has-no-areas-of-dryness-first-time...
184•thnaks•1h ago•77 comments

The challenges of soft delete

https://atlas9.dev/blog/soft-delete.html
63•buchanae•3h ago•38 comments

Instabridge has acquired Nova Launcher

https://novalauncher.com/nova-is-here-to-stay
118•KORraN•5h ago•88 comments

Cloudflare zero-day: Accessing any host globally

https://fearsoff.org/research/cloudflare-acme
36•2bluesc•8h ago•9 comments

Provably unmasking malicious behavior through execution traces

https://arxiv.org/abs/2512.13821
16•PaulHoule•2h ago•3 comments

The Unix Pipe Card Game

https://punkx.org/unix-pipe-game/
172•kykeonaut•7h ago•49 comments

Electricity use of AI coding agents

https://www.simonpcouch.com/blog/2026-01-20-cc-impact/
37•linolevan•6h ago•22 comments

Which AI Lies Best? A game theory classic designed by John Nash

https://so-long-sucker.vercel.app/
28•lout332•2h ago•19 comments

I'm addicted to being useful

https://www.seangoedecke.com/addicted-to-being-useful/
474•swah•13h ago•233 comments

Inside the secret world of Japanese snack bars

https://www.bbc.com/travel/article/20260116-inside-the-secret-world-of-japanese-snack-bars
81•rmason•3h ago•53 comments

Are Arrays Functions?

https://futhark-lang.org/blog/2026-01-16-are-arrays-functions.html
8•todsacerdoti•1d ago•1 comments

Running Claude Code dangerously (safely)

https://blog.emilburzo.com/2026/01/running-claude-code-dangerously-safely/
271•emilburzo•12h ago•224 comments

Our approach to age prediction

https://openai.com/index/our-approach-to-age-prediction/
54•pretext•5h ago•108 comments

RCS for Business

https://developers.google.com/business-communications/rcs-business-messaging
24•sshh12•20h ago•26 comments

Building Robust Helm Charts

https://www.willmunn.xyz/devops/helm/kubernetes/2026/01/17/building-robust-helm-charts.html
10•will_munn•1d ago•0 comments

Show HN: Agent Skills Leaderboard

https://skills.sh
28•andrewqu•3h ago•14 comments

Show HN: Mastra 1.0, open-source JavaScript agent framework from the Gatsby devs

https://github.com/mastra-ai/mastra
72•calcsam•8h ago•30 comments

Maintenance: Of Everything, Part One

https://press.stripe.com/maintenance-part-one
56•mitchbob•5h ago•12 comments

Unconventional PostgreSQL Optimizations

https://hakibenita.com/postgresql-unconventional-optimizations
256•haki•10h ago•34 comments

DOGE employees may have improperly accessed social security data, DOJ says

https://www.axios.com/2026/01/20/doge-employees-social-security-information-court-filing
48•belter•1h ago•2 comments

Dockerhub for Skill.md

https://skillregistry.io/
16•tomaspiaggio12•9h ago•10 comments

Lunar Radio Telescope to Unlock Cosmic Mysteries

https://spectrum.ieee.org/lunar-radio-telescope
6•rbanffy•2h ago•0 comments

TopicRadar – Track trending topics across Hacker News, GitHub, ArXiv, and more

https://apify.com/mick-johnson/topic-radar
14•MickolasJae•9h ago•3 comments

IPv6 is not insecure because it lacks a NAT

https://www.johnmaguire.me/blog/ipv6-is-not-insecure-because-it-lacks-nat/
28•johnmaguire•5h ago•13 comments

Claude Chill: Fix Claude Code's Flickering in Terminal

https://github.com/davidbeesley/claude-chill
4•behnamoh•1h ago•0 comments

LG UltraFine Evo 6K 32-inch Monitor Review

https://www.wired.com/review/lg-ultrafine-evo-6k-32-inch-monitor/
52•tosh•3d ago•88 comments

Nvidia Stock Crash Prediction

https://entropicthoughts.com/nvidia-stock-crash-prediction
336•todsacerdoti•8h ago•282 comments

Channel3 (YC S25) Is Hiring

https://www.ycombinator.com/companies/channel3/jobs/3DIAYYY-backend-engineer
1•aschiff1•12h ago

Fast Concordance: Instant concordance on a corpus of >1,200 books

https://iafisher.com/concordance/
28•evakhoury•4d ago•2 comments
Open in hackernews

Show HN: Fence – Sandbox CLI commands with network/filesystem restrictions

https://github.com/Use-Tusk/fence
13•jy-tan•6h ago
Hi HN!

Fence wraps any command in a sandbox that blocks network by default and restricts filesystem writes. Useful for running semi-trusted code (package installs, build scripts, unfamiliar repos) with controlled side effects, or even just blocking tools that phone home.

> fence curl https://example.com # -> blocked

> fence -t code -- npm install # -> template with registries allowed

> fence -m -- npm install # -> monitor mode: see what gets blocked

One use-case is to use it with AI coding agents to reduce the risk of running agents with fewer interactive permission prompts:

> fence -t code -- claude --dangerously-skip-permissions

You can import existing Claude Code permissions with `fence import --claude`.

Fence uses OS-native sandboxing (macOS sandbox-exec, Linux bubblewrap) + local HTTP/SOCKS proxies for domain filtering.

Why I built this: I work on Tusk Drift, a system to record and replay real traffic as API tests (https://github.com/Use-Tusk/tusk-drift-cli). I needed a way to sandbox the service under test during replays to block localhost outbound connections (Postgres, Redis) and force the app to use mocks instead of real services. I quickly realized that this could be a general purpose tool that would also be useful as a permission manager across CLI agents.

Limitations: Not strong containment against malware. Proxy-based filtering requires programs to respect `HTTP_PROXY`.

Curious if others have run into similar needs, and happy to answer any questions!

Comments

Marceltan•6h ago
Nice, this was helpful for us internally. Good call on allowing importing of existing .claude/settings.json, makes my life easier on personal projects.