frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: Enforra – open-source action governance for AI agent tool calls

https://github.com/enforra/enforra
4•rohitguptap•4h ago

Comments

rohitguptap•4h ago
Hi HN,

I’ve been thinking about a gap in how teams are shipping AI agents: system prompts are not a security boundary.

When an agent can issue refunds, run commands, send emails, export data, or modify production systems, the control point should sit before the tool callback executes, not inside the prompt.

Enforra is an open-source SDK that wraps application-owned tool callbacks and returns one of four decisions before the callback runs:

- allow - block - require_approval - log_only

Example: a support agent tries to refund $1,000. Policy says block above $500. The callback never runs. The decision and reason are logged before execution.

It includes:

- Node SDK - YAML policy engine with any/all condition groups - CLI for creating and testing policies - policy simulator for CI - decision trace showing why a policy matched - local JSONL audit logs with secret redaction - optional hash-chain audit integrity - starter policy examples and demos

The OSS core runs locally, makes no hosted API calls, and does not execute your tools remotely.

Install:

npm install @enforra/sdk-node

Try the CLI:

npx @enforra/cli init npx @enforra/cli test

Repo: https://github.com/enforra/enforra

Website: https://enforra.com

Curious whether others building agents have hit this problem: what is your current approach to controlling what your agent is actually allowed to do at runtime?

Show HN: Forge – Guardrails take an 8B model from 53% to 99% on agentic tasks

https://github.com/antoinezambelli/forge
268•zambelli•13h ago•98 comments

Show HN: Gaussian Splat of a Strawberry

https://superspl.at/scene/84df8849
475•danybittel•15h ago•185 comments

Show HN: Superlog (YC P26) – Observability that installs itself and fixes bugs

https://superlog.sh/
48•Magnanten•9h ago•43 comments

Show HN: Yt-x v0.8.0 – Browse, play, and download YouTube from the terminal

https://github.com/Benexl/yt-x
15•Benex254•5h ago•0 comments

Show HN: Haystack – Review the PRs that need human attention

https://haystackeditor.com/
29•akshaysg•1d ago•8 comments

Show HN: I made a 3D pose maker for artists

https://setpose.com/
70•augustvdv•11h ago•30 comments

Show HN: Pg_deltax, Apache-licensed alternative to TimescaleDB

https://github.com/xataio/deltax
22•tee-es-gee•7h ago•1 comments

Show HN: Id-agent – Token efficient UUID alternative for AI agents

https://github.com/vostride/id-agent
35•pranshuchittora•14h ago•49 comments

Show HN: Number Gacha, a gacha game distilled to its essence

https://isabisabel.com/gacha/
237•babel16•6d ago•119 comments

Show HN: I built a native macOS Markdown viewer 100% with AI coding agents

https://github.com/rajatarya/mdviewer
4•rajatarya•3h ago•0 comments

Show HN: Hsrs – Type-Safe Haskell Bindings Generator for Rust

https://github.com/harmont-dev/hsrs
52•suis_siva•21h ago•6 comments

Show HN: Files.md – Open-source alternative to Obsidian

https://github.com/zakirullin/files.md
692•zakirullin•1d ago•338 comments

Show HN: SharpSkill – A LeetCode Alternative with real interview outcomes

https://sharpskill.dev/en/vs/leetcode
4•GiornoJojo•4h ago•0 comments

Show HN: Enforra – open-source action governance for AI agent tool calls

https://github.com/enforra/enforra
4•rohitguptap•4h ago•1 comments

Show HN: InsForge – Open-source Heroku for coding agents

https://github.com/InsForge/InsForge
55•mrcoldbrew•1d ago•6 comments

Show HN: Bevel – Guess the book from its opening passage

https://bevel.ink
3•knotalegend•5h ago•0 comments

Show HN: DDS Vibe Academy – 31 free AI coding masterclasses, built by AI agents

2•robert_ddsbos•5h ago•0 comments

Show HN: Logbox – let Claude monitor your dev logs

https://github.com/struct-dot-ai/logbox
4•nimeshmc•6h ago•1 comments

Show HN: Search 67K .AI domains by AI-extracted tags and descriptions

https://ratemyaisite.com/explore
2•prolly97•6h ago•0 comments

Show HN: How Expensive Is Your (Steam) Wishlist?

https://weloveit.io/how-expensive-is-your-wishlist/
3•dejobaan•8h ago•0 comments

Show HN: audio.observer – AI news jingles you didn’t ask for

https://audio.observer/
3•ugnju•8h ago•0 comments

Show HN: LibreOffice-rs – I built a pure-Rust LibreOffice using autoresearch

https://github.com/clark-labs-inc/libreoffice-rs
5•stan_kirdey•8h ago•0 comments

Show HN: Semble – Code search for agents that uses 98% fewer tokens than grep

https://github.com/MinishLab/semble
439•Bibabomas•2d ago•147 comments

Show HN: Autodidact – Self-evolving local-first AI agent

https://github.com/BuffaloTechRider/Autodidact
5•waterbuffaloai•10h ago•1 comments

Show HN: Gpubook – An order book for GPU compute

https://gpubook.io
5•jesse_portal•10h ago•1 comments

Show HN: Clark-Browser – Stealth Chromium

https://github.com/clark-labs-inc/clark-browser
14•stan_kirdey•22h ago•3 comments

Show HN: We missed Winamp, so we built an audio player for macOS

https://www.advanced-research.net/180db
71•surganov•1d ago•75 comments

Show HN: Mezz, a curl-able WiFi sandbox for IoT pentesting

https://github.com/ABGEO/mezz
39•ABGEO•4d ago•10 comments

Show HN: Auto-identity-remove – Automated data broker opt-out runner for macOS

https://github.com/stephenlthorn/auto-identity-remove
323•stephenlthorn•1d ago•134 comments

Show HN: Noxu DB, a Rust Port of Berkeley DB Java Edition

https://codeberg.org/gregburd/noxu
3•gregburd•13h ago•0 comments