Ag

AgentPort – Open-source Security Gateway For Agents

Hacker News

AgentPort – Open-source Security Gateway For Agents

Hey HN! I've been wanting to use something like OpenClaw for a while but couldn't get myself to give it access to anything important due to all the risks involved. Prompt injection is still a problem (even though some people seem to ignore it) and so are hallucinations and mishaps that cause agents to do things like delete production data [1]. Even harnesses like Claude Code and Codex are subject to this, particularly since we're getting progressively looser about how we run them e.g. Conductor is really popular and runs agents without any sandboxing. That means we're in a bit of an all-or-nothing situation. There are people who just ignore the risks and connect everything to their agents and reap benefits from it while being subject to more risk, and there are others that just don't connect anything because they are mindful of the potential issues. I've been quite cautious but have wanted to run more autonomous agents and so I built the component I needed to enable me to do so: AgentPort. AgentPort is a gateway that connects to any service (e.g. Gmail, GitHub, Stripe, PostHog, Linear) and let's you set granular permissions for what the agent can do automatically, what it needs your approval for, and what it can never do. For example, you can set `list_customers` and `get_customer` on the Stripe integration to "Auto-approve" but `create_refund` to "Ask for approval". The agent will thus be able to do a lot in the background independently but when it comes to a potentially destructive operation it will be blocked and receive an approval link to send to you. You can then approve or deny the call with those exact parameters e.g. `create_refund(customer_id: 1234, amount: 12)`. Agents connect via MCP or CLI and have access to all the integrations you connected without ever getting API keys. Kind of like Composio but with granular permissions and open source. The goal with AgentPort is to specifically address two vulnerabilities that agents are subject to: 1. Destructive operations on downstream services: It can't delete a database unless you explicitly approve 2. Credential exfiltration: Your agent never sees API keys AgentPort also helps with sensitive data exfiltration, but that is more nuanced and complicated to defend against if the agent has an internet connection [2]. Ultimately, AgentPort was the missing piece for me to start running more autonomous agents that have access to third-party services, and hopefully it can unlock use cases for you too. There's a ton more work needed around securing agents (Claws in particular) and I've both been writing about it [3] and intend to do more in this space, so if you're thinking about similar things let's have a chat. The repo is https://github.com/yakkomajuri/agentport and you can run it locally with docker compose in a minute or use the one-liner install to deploy a prod instance (domain, TLS, etc.) in just a few mins as well. [1] "An AI agent deleted our production database. The agent's confession is below" ( https://news.ycombinator.com/item?id=47911524 ) [2] See my post "On agents dropping production databases": https://yakko.dev/blog/on-agents-dropping-production-dbs [3] https://yakko.dev/blog

Share card

Actual performance

8points
3comments
Made the leaderboard

Launch Intel predictions

Analyze your own launch →
Product HuntOn track for Day 1 leaderboard · Strong signals: agents, agent, claude · Missing: mac, macos, cursor
99%99% predicted probability of success on Product Hunt, based on ML models trained on real launch data.
best fitHighest predicted score across all platforms for this description.
Indie HackersFits the IH revenue-focused audience · Strong signals: para · Missing: supports, reddit linkedin, podcasting
83%83% predicted probability of success on Indie Hackers, based on ML models trained on real launch data.
Hacker NewsMay not resonate with HN audience · Strong signals: open source, io · Missing: https docs, excited, just released
50%50% predicted probability of success on Hacker News, based on ML models trained on real launch data.
nativeThis product was originally launched on this platform.
TrustMRRLess likely to generate early MRR · Strong signals: way, para · Missing: mobile apps, ios, personal
50%50% predicted probability of success on TrustMRR, based on ML models trained on real launch data.
Acquire.comPre-revenue stage for this audience · Missing: arr, mrr, revenue
24%24% predicted probability of success on Acquire.com, based on ML models trained on real launch data.
AppSumoMay struggle as an AppSumo deal · Missing: plus, platform, intuitive
23%23% predicted probability of success on AppSumo, based on ML models trained on real launch data.
BetaListMay not resonate with beta-testers · Strong signals: chat · Missing: web3, crypto, cryptocurrency
0%0% predicted probability of success on BetaList, based on ML models trained on real launch data.

Incorrect prediction on native model

Similar products

Op
Open Source MCP Gateway44%Launch Intel prediction score: how likely this product is to succeed on its source platform, based on its name, tagline, and description.

Open Source MCP Gateway

Hacker News2
Sc
Scarf Gateway is now an open source Haskell project75%Launch Intel prediction score: how likely this product is to succeed on its source platform, based on its name, tagline, and description.

Scarf Gateway is now an open source Haskell project

Hacker News6
Ro
Roids – Open Source Steroids for your Agents61%Launch Intel prediction score: how likely this product is to succeed on its source platform, based on its name, tagline, and description.

Roids – Open Source Steroids for your Agents

Hacker News2
Pr
Proventra – Open-source prompt injection security for AI agents27%Launch Intel prediction score: how likely this product is to succeed on its source platform, based on its name, tagline, and description.

Proventra – Open-source prompt injection security for AI agents

Hacker News3
SolonGate
SolonGate36%Launch Intel prediction score: how likely this product is to succeed on its source platform, based on its name, tagline, and description.

Security Gateway for AI Agents

Indie Hackersai
GitPortal
GitPortal76%Launch Intel prediction score: how likely this product is to succeed on its source platform, based on its name, tagline, and description.

Your gateway to open source collaboration

Product Hunt+9
Te
TensorWall – Open-source LLM gateway with budget controls and security32%Launch Intel prediction score: how likely this product is to succeed on its source platform, based on its name, tagline, and description.

TensorWall – Open-source LLM gateway with budget controls and security

Hacker News1
Op
Open-Source Data Security Platform65%Launch Intel prediction score: how likely this product is to succeed on its source platform, based on its name, tagline, and description.

Open-Source Data Security Platform

Hacker News2
Cencurity
Cencurity75%Launch Intel prediction score: how likely this product is to succeed on its source platform, based on its name, tagline, and description.

Security gateway for LLM agents

Product Hunt+83
Gr
GraphQL Armor – An open source security layer for GraphQL71%Launch Intel prediction score: how likely this product is to succeed on its source platform, based on its name, tagline, and description.

GraphQL Armor – An open source security layer for GraphQL

Hacker News3