frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: SkillLens – scan and audit locally installed agent skills

https://skilllens.run
3•morozred•2h ago
Hi HN — I built a small CLI called SkillLens to help answer: “What agent skills do I have installed, and are any of them sketchy?”

A lot of agent ecosystems (Claude/Codex/OpenCode, etc.) store skills as folders with a SKILL.md. These files can contain surprisingly powerful instructions (and sometimes unsafe patterns), but they’re easy to forget once installed. We're also tend to run them with --dangerously-skip-permissions and let them install whatever they want, but I got a bit anxious about it so decided to build a tool to have some peace of mind.

I decided to not go with AST static check but instead use whatever CLI you have locally to validate it.

SkillLens does two things:

1. Discovery: it scans common local skill locations (configurable) and lists what it finds. 2. Optional audit: if you have an auditor CLI installed (claude or codex), it sends each SKILL.md (currently truncated to ~12k chars) to the auditor and asks for structured JSON output:

- verdict: safe | suspicious | unsafe - risk: 0–10 - summary + issues with evidence

It also caches audit results locally so reruns won't check skills again unless those were updated, you installed anything new or you explicitly asked it to do so with --force flag.

Install/run:

npx skilllens scan # or pnpm dlx skilllens scan

Notes / caveats:

- v0.1; I’m still iterating on the prompt/schema and the “what counts as suspicious” heuristics. - Today it sends the skill text to whatever your auditor CLI uses (so treat it like sharing the skill contents with that provider). “Redacted evidence extraction” is planned, but not implemented yet. - If the auditor CLI isn’t installed, it still produces a scan report and marks audits as skipped.

Show HN: isometric.nyc – giant isometric pixel art map of NYC

https://cannoneyed.com/isometric-nyc/
20•cannoneyed•25m ago•3 comments

Show HN: Sweep, Open-weights 1.5B model for next-edit autocomplete

https://huggingface.co/sweepai/sweep-next-edit-1.5B
466•williamzeng0•17h ago•90 comments

Show HN: Interactive physics simulations I built while teaching my daughter

https://www.projectlumen.app/
40•anticlickwise•3d ago•4 comments

Show HN: A Node Based Editor for Three.js Shading Language (TSL)

https://www.tsl-graph.xyz/
2•bhushanwtf•12m ago•0 comments

Show HN: ChartGPU – WebGPU-powered charting library (1M points at 60fps)

https://github.com/ChartGPU/ChartGPU
643•huntergemmer•1d ago•201 comments

Show HN: Bible translated using LLMs from source Greek and Hebrew

https://biblexica.com
5•epsteingpt•1h ago•4 comments

Show HN: Rails UI

https://railsui.com/
192•justalever•22h ago•106 comments

Show HN: RatatuiRuby wraps Rust Ratatui as a RubyGem – TUIs with the joy of Ruby

https://www.ratatui-ruby.dev/
147•Kerrick•5d ago•30 comments

Show HN: I built a JSON viewer that decodes Base64 media inline

https://viewjson.net
3•dassh•2h ago•0 comments

Show HN: SkillLens – scan and audit locally installed agent skills

https://skilllens.run
3•morozred•2h ago•0 comments

Show HN: Differentiable Quantum Chemistry

https://github.com/lowdanie/hartree-fock-solver
49•lowdanie•4d ago•14 comments

Show HN: AIIM – Parametric Identity Engine for Consistent NPCs

https://ai-im.tech
2•juliavvrn•3h ago•0 comments

Show HN: yolo-cage – AI coding agents that can't exfiltrate secrets

https://github.com/borenstein/yolo-cage
57•borenstein•1d ago•72 comments

Show HN: High speed graphics rendering research with tinygrad/tinyJIT

https://github.com/quantbagel/gtinygrad
28•quantbagel•13h ago•9 comments

Show HN: A quiet, offline-first reading app for reading books

https://deep-reader-page.vercel.app
2•smallluo•3h ago•0 comments

Show HN: Take a Break – a gentle extension to stop autoplay late at night

https://hardiksondagar.me/take-a-break/
2•hardiksondagar•3h ago•0 comments

Show HN: Mastra 1.0, open-source JavaScript agent framework from the Gatsby devs

https://github.com/mastra-ai/mastra
211•calcsam•2d ago•69 comments

Show HN: Retain – A unified knowledge base for all your AI coding conversations

https://github.com/BayramAnnakov/retain
42•Bayram•21h ago•14 comments

Show HN: Open-source certificate from GitHub activity

https://certificate.brendonmatos.com
40•brendonmatos•4d ago•9 comments

Show HN: SGR – A Linear-Complexity "Living Cell" Outperforming Transformers

4•MrPan•5h ago•0 comments

Show HN: See the carbon impact of your cloud as you code

https://dashboard.infracost.io/
65•hkh•1d ago•26 comments

Show HN: Dotenv Mask Editor: No more embarrassing screen leaks of your .env

https://marketplace.visualstudio.com/items?itemName=xinbenlv.dotenv-mask-editor
22•xinbenlv•17h ago•23 comments

Show HN: Company hiring trends and insights from job postings

https://jobswithgpt.com/company-profiles/
45•sp1982•23h ago•6 comments

Show HN: Semantic search engine for Studio Ghibli movie

https://ghibli-search.anini.workers.dev/
26•aninibread•1d ago•7 comments

Show HN: Agent Skills Leaderboard

https://skills.sh
133•andrewqu•1d ago•43 comments

Show HN: Hyve – Parallel isolated workspaces for coding agents, multi-repo dev

12•eladkishon•1d ago•1 comments

Show HN: SpeechOS – Wispr Flow-inspired voice input for any web app

https://www.speechos.ai/
12•gangster_dave•1d ago•5 comments

Show HN: Diesel-guard v0.5.0 – Lint Diesel/SQLx Postgres migrations (24 checks)

https://github.com/ayarotsky/diesel-guard/releases/tag/v0.5.0
3•ayarotsky•4h ago•0 comments

Show HN: TopicRadar – Track trending topics across HN, GitHub, ArXiv, and more

https://apify.com/mick-johnson/topic-radar
35•MickolasJae•2d ago•9 comments

Show HN: Skill & MCP server for searching and retrieving 200k+ icons

https://github.com/better-auth/better-icons
2•bekacru•11h ago•0 comments