Ship Safe, an open source security scanner for coding agents

5 pointsposted 9 hours ago
by asamassekou

8 Comments

znnajdla

6 hours ago

I'm completely new to the AI-security harness space. Can someone tell me what the industry standard is? I just ran Kimi K3 inside Pi to do a quick scan I did find quite a few important things but it seems like it will do better with a specialized harness.

nullbio

7 hours ago

I've seen many of these pop up over the last 6 months. What separates yours from all of the others? What makes it better? (Genuine question, not being snarky.)

pelasaco

7 hours ago

Because it's so cheap to vibe-code a tool that, at least in your head, fits your use case exactly.

Code is cheap. GitHub is free (although I'm betting that free code hosting will start disappearing before the end of the year). And people want to showcase their "skills."

Vibe-code a tool, post it on Hacker News, collect stars and karma, repeat.

It's almost becoming the software developer equivalent of being an influencer...

prox

6 hours ago

How about HN make a rule where you can’t just post your latest vibe, you need to tell us why and how this project fits and what it meant writing it. Put the effort in, remove the low-effort.

nullbio

6 hours ago

That would be nice. Unfortunately people would just end up LLM generating slop filler descriptions anyway though.

sixtyj

4 hours ago

“Everybody can be a coder now”, coding is new crypto or nft rush…

As the world is not saturated with software enough, here comes the vibe-coding mess.

GitHub was joined by 36,000,000 new coders in 2025.

Daily there are about 330,000 new repos (incl. forks).

So I have decided to try a project with some stars and forks’ number threshold and let crowd decide what’s useful :)

pelasaco

3 hours ago

An interesting exercise: Check the github repository from those people releasing vibe-coded projects. Look back before 2025.. either didn't exist or the projects were mainly forks.. than suddenly AI experts. Vibe-coding 100 projects/month :)