Settings

Theme

ReceiptBot – Stop Node.js AI agents from reading .env and burning your budget

github.com

1 points by LocalhostLegend 3 days ago · 1 comment

Reader

LocalhostLegendOP 3 days ago

Hey HN. I got nervous about prompt injection bypassing standard agent SDKs by just calling node:fs directly. I built this to monkey-patch core modules and log a 'receipt' of what the agent actually did. I know it's not a hard OS sandbox, and Deno handles this better natively, but I wanted a pragmatic seatbelt for existing Node codebases. Would love feedback!

I wrote a short thread and included a screenshot of the UI catching a redacted key here: https://x.com/LocalhostLegend/status/2043511508408160666

Keyboard Shortcuts

j
Next item
k
Previous item
o / Enter
Open selected item
?
Show this help
Esc
Close modal / clear selection