Show stories

Live mirror
30 storiesupdated 0s agoView source snapshot
  1. Show HN: An e-ink frame that hears birds and draws them as 1800s illustrations(github.com/arnegiacomo ↗)
    168comments
  2. Show HN: Capsule – Single-file web apps that save their data into SQLite(withcapsule.app ↗)
    113comments
  3. Show HN: Pizza Bot – An inbox for AI agents that work in the background(github.com/pizza-bot-app ↗)
    3comments
  4. Show HN: Hacking a $20 4G wireless hotspot into a texting device(bkovac.github.io ↗)
    30comments
  5. Show HN: Panel – A research workspace where the agent can build its own panes(github.com/greentfrapp ↗)
    11comments
  6. Show HN: DeadLock OS – A Linux terminal puzzle game(crazygames.com ↗)
    discuss
  7. Show HN: Check if your IP has appeared in a residential proxy network(haveibeenproxied.com ↗)
    33comments
  8. Show HN: Ordewell – turn one goal into an ordered plan of coding-agent tasks(github.com/ordewell ↗)
    29comments
  9. Show HN: HonestSky, a free iOS weather app without ads or subscriptions(apps.apple.com ↗)
    discuss
  10. Show HN: Redis City – Explore how Redis works in an interactive 3D model(poltora.dev ↗)
    25comments
  11. Show HN: Loss. a tiny satire about AI progress(workatloss.com ↗)
    7comments
  12. Show HN: SCIP MIP solver bindings for Go, ported from russcip(github.com/egoisutolabs ↗)
    discuss
  13. Show HN: farseer.space – fly anywhere in the universe in your browser(farseer.space ↗)
    1comments
  14. Show HN: Macros with a Behringer FCB1010 MIDI Pedalboard in macOS(github.com/jamesryanatx ↗)
    21comments
  15. Show HN: Sass – Rust and WASM(github.com/zoosky ↗)
    discuss
  16. Show HN: DaiDocs, AI memory as a plain-text file format, not a service(github.com/kerneta ↗)
    1comments
  17. Show HN: Kinesis – Control your Mac with the Meta Neural Band(github.com/callbacked ↗)
    45comments
  18. Show HN: Pelican-bicycle alternatives(gally.net ↗)
    45comments
  19. Show HN: Warp – Run DeepSeek v4.1 Flash with 5 GB of RAM at 3.77 tok/s(github.com/sqliteai ↗)
    2comments
  20. Show HN: Nari Qwen3-TTS and Qwen3-ASR – High accuracy, low latency and cost(narilabs.com ↗)
    31comments
  21. Show HN: Open-source passive NFC tag that signs with ECDSA, verified on-chain(github.com/mwbpnftechnology ↗)
    discuss
  22. Show HN: Let agent read files with secrets while redacting values for LLM contex(github.com/daniel-sc ↗)
    1comments
  23. Show HN: AirmailAI, a BYOK LLM chat app with a browser extension backend(airmailai.net ↗)
    6comments
  24. Show HN: TrailVid – Cinematic Travel Animations(trailvid.com ↗)
    discuss
  25. Show HN: Omni – Open-source workplace agent, built on Postgres
    discuss
  26. Show HN: TabPFN-3.5, a Tabular Foundation Model for messy real-world tables(priorlabs.ai ↗)
    1comments
  27. Show HN: I ported COLMAP (photogrammetry) to the browser in WASM and WebGPU(offlinetools.io ↗)
    discuss
  28. Show HN: I built a tiny camera that knows where it is(mightycamera.com ↗)
    4comments
  29. Show HN: Extract original images from a PDF in the browser(imissfiles.com ↗)
    discuss
  30. Show HN: Neobrutalism.dev – Just added Base UI support and added new color theme(neobrutalism.dev ↗)
    76comments

Show HN: Let agent read files with secrets while redacting values for LLM contex

3 pointsby 9h agogithub.com
1 comments
9h agoHN ↗

I never installed any "secrets scanner", because of fear it might mess with legitimate tool usage / model context in unexpected ways.

The primary goal of this tool is to adress this. So all "smartness" is in the (human controlled) setup with heuristics helping finding relevant secrets. A plain config file stores references (not secrets themselves), and the runtime harness hook resolves these values and does a literal search + replace for LLM bound text.

Example: It does not block reading `.env.local` but only redacts secrets that were configured in the setup step. This way, the relevant config values can be read by the LLM (and probably the LLM has less incentive to work around to read the full file anyways..).

This intentionally does not cover all ways secrets can escape (direct exfiltration to third parties, transformed values - e.g. base64, unknown secrets, ...) - but I think, the value of "not being afraid to get obstructed" would outweigh that. Also, accidental disclosures shoud be covered rather well.

Currently Claud Code + experimental Codex, Copilot, OpenCode support. Runs fully local and is free and open source.

Let me know: Why would you (not) use it?