frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Show HN: The HN Arcade

https://andrewgy8.github.io/hnarcade/
255•yuppiepuppie•9h ago•65 comments

Show HN: I built a small browser engine from scratch in C++

https://github.com/beginner-jhj/mini_browser
95•crediblejhj•5h ago•24 comments

Show HN: SHDL – A minimal hardware description language built from logic gates

https://github.com/rafa-rrayes/SHDL
6•rafa_rrayes•7h ago•1 comments

Show HN: Dwm.tmux – a dwm-inspired window manager for tmux

https://github.com/saysjonathan/dwm.tmux
73•saysjonathan•4d ago•12 comments

Show HN: Cua-Bench – a benchmark for AI agents in GUI environments

https://github.com/trycua/cua
26•someguy101010•2d ago•4 comments

Show HN: Build Web Automations via Demonstration

https://www.notte.cc/launch-week-i/demonstrate-mode
24•ogandreakiro•1d ago•9 comments

Show HN: SharpAPI – Real-time sports odds API with +EV and arbitrage detection

https://sharpapi.io
3•MykLaz•1h ago•0 comments

Show HN: Record and share your coding sessions with CodeMic

https://codemic.io/#
8•seansh•5h ago•2 comments

Show HN: Extracting React apps from Figma Make's undocumented binary format

https://albertsikkema.com/ai/development/tools/reverse-engineering/2026/01/23/reverse-engineering...
45•albertsikkema•5d ago•12 comments

Show HN: Ghostly: The Ultimate Platform for Ghosting Candidates (Satire)

https://staticfile-25978.wasmer.app/
2•dw1014•1h ago•0 comments

Show HN: LemonSlice – Upgrade your voice agents to real-time video

109•lcolucci•1d ago•119 comments

Show HN: A header-only C++20 compile-time assembler for x86/x64 instructions

https://github.com/mahmoudimus/static_asm
2•mahmoudimus•3h ago•0 comments

Show HN: Fuzzy Studio – Apply live effects to videos/camera

https://fuzzy.ulyssepence.com/
50•ulyssepence•1d ago•15 comments

Show HN: One Human + One Agent = One Browser From Scratch in 20K LOC

https://emsh.cat/one-human-one-agent-one-browser/
304•embedding-shape•1d ago•145 comments

Show HN: I wrapped the Zorks with an LLM

https://infocom.tambo.co/
102•alecf•22h ago•56 comments

Show HN: We Built the 1. EU-Sovereignty Audit for Websites

https://lightwaves.io/en/eu-audit/
99•cmkr•1d ago•78 comments

Show HN: We built a type-safe Python ORM for RedisGraph/FalkorDB

5•hello-tmst•4h ago•3 comments

Show HN: PNANA - A TUI Text Editor

https://github.com/Cyxuan0311/PNANA
5•Frameser•7h ago•4 comments

Show HN: Multi-Agent Framework for Ruby

https://github.com/chatwoot/ai-agents
2•shivam-dev•4h ago•0 comments

Show HN: Cloakly – Hide sensitive windows from screen shares in real-time

3•jaygood•5h ago•0 comments

Show HN: AI PDF to ePub Converter

https://pdftoepubai.com
2•svx_hn•5h ago•0 comments

Show HN: mute your macOS mic to ZERO. But Siri keeps listening

https://github.com/BrowserBox/NoSpy
3•keepamovin•6h ago•1 comments

Show HN: Only 1 LLM can fly a drone

https://github.com/kxzk/snapbench
177•beigebrucewayne•2d ago•92 comments

Show HN: TetrisBench – Gemini Flash reaches 66% win rate on Tetris against Opus

https://tetrisbench.com/tetrisbench/
109•ykhli•2d ago•40 comments

Show HN: Marches & Gnats – Coding puzzle game where you program Turing machine

https://mng.quest/
2•maltsev•3h ago•1 comments

Show HN: An interactive map of US lighthouses and navigational aids

https://www.lighthouses.app/
100•idd2•3d ago•22 comments

Show HN: A blog that deletes itself if you stop writing

https://lapse.blog
3•reassess_blind•12h ago•1 comments

Show HN: TUI for managing XDG default applications

https://github.com/mitjafelicijan/xdgctl
136•mitjafelicijan•3d ago•45 comments

Show HN: A 4.8MB native iOS voice notes app built with SwiftUI

https://apps.apple.com/us/app/convoxa-ai-meeting-minutes/id6755150446
5•karamalaskar•23h ago•0 comments

Show HN: SF Microclimates

https://github.com/solo-founders/sf-microclimates
35•weisser•2d ago•31 comments
Open in hackernews

Show HN: I Built a Sandbox for Agents

https://github.com/vrn21/bouvet.com
28•vrn21•3h ago

Comments

bosky101•2h ago
The right link is https://github.com/vrn21/bouvet
nadis•1h ago
Thank you.
ripped_britches•2h ago
Why is it a problem to use containers?
_pdp_•2h ago
We use a service but it is always nice to have a free option if you need it. Good stuff.
canadiantim•2h ago
This relies on the agent requesting a sandbox... which seems like the fox guarding the hen house, no?
monomial•2h ago
Is this a common pattern to have an agent request a sandbox? I feel like I'd want the whole agent running in it's own sandbox to begin with. Firecracker does look like a decent solution for that.
mccraveiro•1h ago
I agree. I'm testing https://sprites.dev/ because of that.
sahiljagtapyc•2h ago
interesting
debarshri•2h ago
Can someone elaborate with whats wrong with having containers for sandbox?
binsquare•1h ago
It's because containers share the kernel with the host. Generally it's just not considered a security boundary. (Note that containers have come a longer way in the security side btw)

So it's a mostly security thing.

debarshri•1h ago
But in the context of agents. Does it matter?
tptacek•1h ago
Depends. Probably not usually. I've thought about this a bunch and I think the serious "threat" here isn't the agent acting maliciously --- though agents will break out of non-hardened sandboxes! --- but rather them exposing some vulnerability that an actual human attacker exploits.
buu700•1h ago
I'd also add that I just don't like the idea in principle that I should have to trust the agent not to act maliciously. If an agent can run rm -rf / in an extreme edge case, theoretically it could also execute a container escape.

Maybe vanishingly unlikely in practice, but it costs me almost nothing to use a VM just in case. It's not impossible that certain models turn out to be poorly behaved, that attackers successfully execute indirect prompt injection via malicious tutorials targeting coding agents, or that some shadowy figure runs a plausibly deniable attack against me through an LLM API.

debarshri•45m ago
This is a genuine concern. But this sounds a bit independent of the execution environment. It could either be containers or VMs.
tptacek•32m ago
On a local machine, yeah, I think it's pretty situational. VMs are safer, but in risk management terms the win is sometimes not that significant.

In a multitenant cloud environment, of course, totally different story.

aghilmort•1h ago
security matters if want to demarc where agents can play. running agent inside of strong VM is usually where starts container not enough for that full isolation only sees files you want it to etc
binsquare•1h ago
Imo it's even more important in context of agents, if these agents are as good as it's going to get with as much access as we let them.
starlust2•1h ago
One could theoretically use a prompt injection attack to exploit a privilege escalation vulnerability on the kernel.
ATechGuy•1h ago
What about VMs? They offer strong isolation, as they don't share kernels, and have long been a foundational piece for multi-tenant computing. Then, why would we put an extra layer on top and rebrand it as an AI agent sandboxing solution? I'm genuinely curious what pushes everyone to build their own and launch here Is it one of those tarpit ideas: driven by own need and easy to build?
Ronsenshi•1h ago
From what I read others say at some point on HN:

- resources

- security

- setup speed?

I suppose a lot depends on how and in what environment you're dealing with agents.

Resources might be an issue on Mac if you have bunch of agents running different things, trying to execute code in different containers. But that's the issue of Mac and the way containers are running in a VM there.

Security-wise there were concerns with prompt injection telling agent to execute certain steps to escape from container. Possible, but I'm not aware if there were actually cases of that.

tomasphan•2h ago
Seems these thing pop up here ever so often. Either using firecracker or docker/containers. How is this different from the other sandboxes? BTW I love that you got LLM testimonials lol
binsquare•1h ago
I'm building an alternative to firecracker here if you're looking for something wayy different: https://github.com/smol-machines/smolvm
aghilmort•1h ago
we've considered docker, firecracker, will add smol to working roster

context <> building something with QEMU

* required has to support LMW+AI (linux/mac/windows + android/ios)

there are scenarios in which we might spin micro vms inside that main vm, which by default is almost always Debian Linux distro with high probability.

one scenario is say ETL vm and AI vm isolated for various things

curious why building another microVM other than sheer joy of building, what smol does better or different, why use smol, etc. (microVMs to avoid etc also fair game :)

jkelleyrtp•1h ago
I needed Mac / win/ Linux / iOS / android for dioxus dev, so I built my own in rust.

https://skyvm.dev/

binsquare•1h ago
I focus on different design decisions.

Smolvm is designed to run locally, persistent (stateful), long running (efficiency), and interactive.

Worked with firecracker and other options a lot btw, most of everything is designed for ephemeral serverless workloads.

binsquare•1h ago
Cool option, I'm building in the same space. We should chat!
avaer•1h ago
Given that this is using Firecracker, is it Linux only?
coip•1h ago
Anyone have any thoughts on this path if using macOS? Been using it, seems to do the trick pretty well out of the box.

https://developer.apple.com/documentation/Virtualization/run...

aghilmort•1h ago
interesting is the idea the agent calls it or just alt to terminal bash etc tool calls hey your tool calls are all microvms, containers, isoshells, raw term, clawd/molt all credentials with weaker and weaker security demarcs?
FEELmyAGI•1h ago
Great idea that is already implemented as a feature by major AI providers, several well funded startups, countless unfunded startups, and trivially solved per-user with any handful of existing technologies.

Truly baffling its in the top 5 of the front page. My first thought was bot army upvoting but the total points are quite low. That means this is some mod's personal idea of an especially interesting submission?

arscan•1h ago
Having testimonials attributed to Gemini 3 Pro and Claude 4.5 Opus is... interesting. I'm curious what prompt was used to get those quotes.
ATechGuy•1h ago
Congrats on launching, and great testimonials!

What problem does it solve compared to bazillion code execution sandboxing agents (and containers/VMs)?

Overall, a lot of people are building their own code execution sandboxing agents around containers/VMs. Curious to know what's missing that makes people DIY this?

Here's my list of code execution sandboxing agents launched in the last year alone:

1. E2B 2. AIO Sandbox 3. Sandboxer 4. AgentSphere 5. Yolobox 6. Exe.dev 7. yolo-cage 8. SkillFS ERA Jazzberry Computer Vibekit Daytona Modal Cognitora YepCode Run Compute CLI Fence Landrun Sprites pctx-sandbox pctx Sandbox Agent SDK Lima-devbox OpenServ Browser Agent Playground Flintlock Agent Quickstart Bouvet Sandbox Arrakis Cellmate (ceLLMate) AgentFence Tasker

nadis•1h ago
Getting a 404 page not found for this project - how can I try it?