frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: Cupcake – Better performance and security for coding agents (via OPA)

https://github.com/eqtylab/cupcake
12•ramoz•9h ago
We're releasing early efforts on coding agent governance with Cupcake [1] - an open-source policy enforcement layer with native integrations. You write rules in policy-as-code (OPA/Rego), and Cupcake integrates them into the agent runtime via Hooks.

See it in action (Desktop only): https://cupcake-policy-studio.vercel.app/example-policies/se...

Help us build: https://github.com/eqtylab/cupcake

We are EQTY Lab, our mission is verifiable AI (identity, provenance, and governance). With the rise of capable agents like Claude Code, it became immediately clear that those deploying these agents need the ability to conduct their own alignment and safety controls. We can’t rely solely on the frontier labs.

This is why we created the feature request for Hooks in Claude Code [2], and pivoted away from filesystem and OS-level monitoring once those hooks were implemented. Hooks provide the critical points we need:

* Evaluation: Checking agent intent and actions.

* Prevention: Stopping unsafe or unwanted actions.

* Modification: Adjusting the agent's output before execution.

Policy-as-Code with OPA/Rego - While many agent security papers suggest similar policy architectures using invented DSLs, Cupcake is fundamentally built on Open Policy Agent (OPA) and its policy language, Rego [3].

We chose Rego because it is:

* Industry-Robust: Widely adopted across enterprise DevSecOps and cloud-native environments.

* Purpose-Built: Offers unique, mature advantages for defining, managing, and enforcing policy as code.

* Enterprise-Oriented: This makes Cupcake compatible with existing enterprise governance frameworks.

Cupcake is released under the Apache-2.0 license. We will formalize a path to v1.0.0 in Q1 of 2026. This is an early preview version. The goal with Cupcake is not suppression, but to ensure an agent is able to drive fast without crashing. To collaborate, or join forces: ramos at eqtylab dot io.

[1] https://github.com/eqtylab/cupcake

[2] https://github.com/anthropics/claude-code/issues/712

[3] https://www.openpolicyagent.org/

Show HN: Automated license plate reader coverage in the USA

https://alpranalysis.com
106•sodality2•7h ago•67 comments

Show HN: VoxCSS – A DOM based voxel engine

https://github.com/LayoutitStudio/voxcss
25•rofko•1w ago•3 comments

Show HN: A 2-row, 16-key keyboard designed for smartphones

https://k-keyboard.com/Why-QWERTY-mini
49•QWERTYmini•7h ago•42 comments

Show HN: Mizu – Zero-dependency web framework

https://github.com/go-mizu/mizu
2•tamnd•2h ago•0 comments

Show HN: Open-Source Excel AI Agent

https://github.com/SylvianAI/sv-excel-agent
3•williamshuang•2h ago•0 comments

Show HN: Gemini Pro 3 imagines the HN front page 10 years from now

https://dosaygo-studio.github.io/hn-front-page-2035/news
3267•keepamovin•1d ago•932 comments

Show HN: I launched a podcast to interview makers

https://happymaking.art/
5•sillysideprojs•6h ago•0 comments

Show HN: MCPShark – Traffic Inspector for Model Context Protocol

27•mywork-dev•7h ago•3 comments

Show HN: I added a print edition to my indie blog

https://www.contraption.co/introducing-the-print-edition/
4•philip1209•6h ago•5 comments

Show HN: Cargo-rail: graph-aware monorepo tooling for Rust; 11 deps

https://github.com/loadingalias/cargo-rail
3•LoadingALIAS•4h ago•1 comments

Show HN: AlgoDrill – Interactive drills to stop forgetting LeetCode patterns

https://algodrill.io
169•henwfan•1d ago•103 comments

Show HN: I built a system for active note-taking in regular meetings like 1-1s

https://withdocket.com
168•davnicwil•2d ago•127 comments

Show HN: Bloodhound – Grey-box attack-path discovery in Rust/Go/C++ binaries

https://www.bloodhoundsecurity.ca
4•michaelafam1•1d ago•6 comments

Show HN: Fanfa – Interactive and animated Mermaid diagrams

https://fanfa.dev/
147•bairess•6d ago•32 comments

Show HN: Fate, a new data framework for React and tRPC, inspired by Relay

https://github.com/nkzw-tech/fate
29•cpojer•1d ago•3 comments

Show HN: MimicKit – RL framework for humanoid motion imitation

https://github.com/xbpeng/MimicKit
3•xbpeng4•9h ago•0 comments

Show HN: Detail, a Bug Finder

https://detail.dev/
66•drob•1d ago•27 comments

Show HN: Cupcake – Better performance and security for coding agents (via OPA)

https://github.com/eqtylab/cupcake
12•ramoz•9h ago•0 comments

Show HN: I made a turn-based strategy game inspired by Advance Wars

https://frontwarsio.org
3•cby821555203•9h ago•0 comments

Show HN: Wirebrowser – A JavaScript Debugger with Breakpoint-Driven Heap Search

https://github.com/fcavallarin/wirebrowser
2•fcavallarin•10h ago•0 comments

Show HN: Shellican – A CLI to organize, document, and share shell scripts

https://github.com/brsyuksel/shellican
4•brsyuksel•11h ago•0 comments

Show HN: DuckDB for Kafka Stream Processing

https://sql-flow.com/docs/tutorials/intro/
75•dm03514•2d ago•13 comments

Show HN: I made a web piano with recording and playback

https://webpiano.jcurcioconsulting.com
3•Jeremy1026•12h ago•0 comments

Show HN: Lockenv – Simple encrypted secrets storage for Git

https://github.com/illarion/lockenv
103•shoemann•2d ago•34 comments

Show HN: ReadyKit – Superfast SaaS Starter with Multi-Tenant Workspaces

https://readykit.dev/
121•level09•1w ago•35 comments

Show HN: Briddle – Guess the AI's semantic path between two words

https://briddle.io/
8•rvranjan•1d ago•1 comments

Show HN: I got tired of switching AI tools, so I built an IDE with 11 of them

https://hivetechs.io
18•hivetechs•1d ago•16 comments

Show HN: Beelines - a travelling salesman game, but with bees

https://easel.games/@raysplaceinspace/beelines
3•BSTRhino•1d ago•1 comments

Show HN: A TSP game I wanted for 10 years - built in 4 hours

https://www.graphhopper.com/blog/2025/12/08/a-tsp-game-10-years-in-the-making-built-in-4-hours/
11•oblonski•1d ago•3 comments

Show HN: The Box – Run multiple Claude CLI agents in parallel in the cloud

https://the-box.dev
2•firdavs9512•18h ago•2 comments