<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: torm115</title><link>https://news.ycombinator.com/user?id=torm115</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Mon, 10 Aug 2026 13:30:53 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=torm115" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by torm115 in "UnYOLO: Agent credential broker and policy engine for your GitHub account"]]></title><description><![CDATA[
<p>Credential scoping handles the "what can the agent do" part, but after running a few agents on my own data for a while I think the harder problem is what they can <i>see</i>. Prompts turned out to be pretty much useless as a boundary there, so I ended up pushing all of it server-side. Is unyolo doing anything on the read side, or is it strictly about gating actions?</p>
]]></description><pubDate>Sun, 09 Aug 2026 20:47:21 +0000</pubDate><link>https://news.ycombinator.com/item?id=49235685</link><dc:creator>torm115</dc:creator><comments>https://news.ycombinator.com/item?id=49235685</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49235685</guid></item></channel></rss>