惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

爱范儿
爱范儿
WordPress大学
WordPress大学
博客园 - 【当耐特】
The Cloudflare Blog
B
Blog
Last Week in AI
Last Week in AI
小众软件
小众软件
量子位
S
SegmentFault 最新的问题
V
Visual Studio Blog
博客园 - 叶小钗
美团技术团队
阮一峰的网络日志
阮一峰的网络日志
Hugging Face - Blog
Hugging Face - Blog
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
宝玉的分享
宝玉的分享
A
About on SuperTechFans
雷峰网
雷峰网
J
Java Code Geeks
Microsoft Azure Blog
Microsoft Azure Blog
腾讯CDC
MongoDB | Blog
MongoDB | Blog
酷 壳 – CoolShell
酷 壳 – CoolShell
Martin Fowler
Martin Fowler

Hacker News - Newest: "AI"

AI can't read an investor deck AI as an attorney? Student uses ChatGPT, Gemini to sue UW over alleged racial discrimination Hacking MCP Servers in AI Systems – The Rug Pull: Tool Changes After Approval GitHub - MeepCastana/KubeezCut: Free Web based video editor Can AI judge journalism? A Thiel-backed startup says yes, even if it risks chilling whistleblowers Coming soon: 10 Things That Matter in AI Right Now DARPA built an AI to fact-check enemy weapons claims What explains heterogeneity in AI adoption? When AI Meets Muscle: Context-Aware Electrical Stimulation Promises a New Way to Guide Human Movements - Department of Computer Science AI Changed How We Build. It Did Not Change What Matters. Linux rules on using AI-generated code - Copilot is OK, but humans must take 'full responsibility for the… Meta spins up AI version of Mark Zuckerberg to engage with employees Code Mode: Let Your AI Write Programs, Not Just Call Tools | TanStack Blog GitHub - Delavalom/graft: Go framework for building AI agents. Type-safe tools, multi-provider (OpenAI, Anthropic, Gemini, Bedrock), zero vendor SDKs. India's TCS tops estimates, says new AI models did not dent services demand Gen Z's fading AI hype Strong feeling: we are in a folded AI reality GitHub - machinarii/total-recall-catalog: A reference catalog of latest knowledge retrieval, memory & RAG systems GitHub - mensfeld/code-on-incus: Give each AI agent its own isolated machine with root, Docker, and systemd. Active defense detects and stops threats automatically.. Quantization, LoRA, and the 8% Problem: Benchmarking Local LLMs for Production AI Iran war: We spoke to the man making Lego-style AI videos that experts say are powerful propaganda Powell, Bessent discussed Anthropic's Mythos AI cyber threat with major U.S. banks GitHub - immartian/bellamem: Persistent belief-graph memory for AI agents. Retrieves decisive context by importance — not recency, not RAG, not /compact. recursive-mode: The Repo-Native Operating System for AI Engineering After the attack on Sam Altman's home, will AI CEO's go on the offensive? The biggest advance in AI since the LLM Opus 4.6 vs GPT 5.4 One Prompt Unity World Generation Test “AI polls” are fake polls Client Challenge Can AI be a 'child of God'? Inside Anthropic's meeting with Christian leaders
Overslash — Actions & auth gateway for AI agents
arturogoosna · 2026-05-31 · via Hacker News - Newest: "AI"

Your agent acts. Overs/ash controls.

One gateway to every service your agent touches. You decide: deny, approve once, or approve all.

app.overslash.com / approvals

● connected

Workspace

Agents

Services

Approvals3

Audit

API

Admin

Users

Settings

Approvals

3 waiting · auto-refresh 5s

Allow deploy-bot to create a pull request?

expires in 9m

Permission

github:create_pull_request:overfolder/app

Title: "Fix bug in payment retry logic"

Last action

2m agoagent:research-bot fetched github:list_repos — bubbled to henry

11m agoagent:ci-runner denied aws.s3.delete_object

What it does

One gateway between your agent and everything else.

Overslash sits between agents and the outside world. It handles secrets, OAuth, MCP, permission chains, human approvals, and authenticated HTTP execution. The agent doesn't hold keys. You don't hold your breath.

Agent identities, in a tree

Every agent gets an identity, a parent, and a blast radius. Sub-agents inherit rules from their parent — until you narrow them.

Human approvals, on tap

The first time an agent wants a permission, you approve or deny. Allow & Remember at the scope ladder you choose.

OAuth & secrets, handled

One place for client IDs, tokens, signing keys. Rotate, revoke, per-agent. No credentials ever touch the agent's context window.

Audit that reads like prose

Every call, every bubble-up, every deny. Streaming, searchable, exportable.

MCP-native

Enroll any MCP client in a click — Claude Desktop, your own. Overslash brokers the tools, the credentials, and the approvals. The agent just asks.

Permission chains

A sub-agent bubbles up to its parent when it hits an unknown scope. Parents bubble to humans. Denials are first-class and recorded.

How it works

Agents ask. Overslash mediates. Services respond.

Any MCP-capable agent — Claude Code, Overfolder, OpenClaw, or your own — connects to Overslash once. Overslash holds the credentials, enforces the rules, and hands each service an authenticated, audited request.

agent:henryagent:deploy-botagent:research-bot

GatewayOvers/ash

Checks rules. Injects credentials. Bubbles unknowns to parent agents or humans. Records every call.

authed request

Servicegithub.com

Receives a normal authenticated request. Knows nothing about the agent.

IdentityOverslash stamps every outbound call with a deterministic actor.

RulesRules live at the gateway. Not in prompts. Not in code. Editable by a human in one click.

Bubble-upUnknown scopes escalate up the agent tree, then to a human. Denials are recorded.

AuditEvery call, response status, bubble, and approval is streamed to the Audit log.

Integrations

A service registry your agent already knows.

First-class templates for the things agents actually touch. And a generic http service for anything else you can point a URL at.

GitHub logo

GitHub

PRs, issues, actions

Slack logo

AWS logo

Google Workspace logo

Google Workspace

Drive, Gmail, Cal

Notion logo

Linear logo

Vercel logo

PostgreSQL logo

PostgreSQL

Read, write, migrate

+

Any HTTP API

Generic service template

More landing soon

Stripe, Zendesk, Jira, Intercom

Pricing

Free in self-hosted. Cloud free for individuals. Paid for teams.

Three ways to use Overslash. Self-hosted gives you everything for free. Your Personal org on Cloud is free, forever. When you want to bring colleagues, create a Team org at €3 per seat.

Run it yourself. Full features — no gating, no license keys, no telemetry. Elastic License 2.0.

  • All features, no gating
  • Unlimited agents, actions, integrations
  • Local secrets vault

Clone the repo

PERSONAL

Free for one

€0forever

A hosted Personal org, just for you. Always free, no card required.

  • Personal org with all integrations
  • Hosted backups & upgrades
  • Personal audit log
  • All Cloud features for one user

Try Personal — free

TEAM

Per seat

€3.63/ month

1 seat · Every seat: €3 · + 21% VAT

Create Team orgs and bring your colleagues. Every seat €3. Your own Personal org stays free.

  • Everything in Personal
  • Multiple Team orgs
  • SSO (Google, GitHub, SAML)
  • Shared connections & secrets
  • Audit log export
  • Pooled usage with metered overages

Start a Team

Open source

Read it. Fork it. Run it.

The gateway core is licensed Elastic 2.0. The services registry — the part the community contributes to — is MIT. No telemetry. No phone-home. Written in Rust and SvelteKit.

MIT · Elastic-2.0 · no telemetry

terminal~/overslash

# clone, build, run — local dev
$ git clone https://github.com/overfolder/overslash
$ cd overslash
$ make install
$ overslash web

# ready on http://localhost:7171
# signing key generated · audit db initialised
# paste the enrollment link into your MCP client

Install · get started

Give this to your agent.

Paste the block below into Claude, Cursor, Open Interpreter, or any MCP-capable agent. It will follow the skill, enroll itself under your Overslash account, and ask you for permissions as they come up.

skill · agent enrollment

Your Human wants to give you access to external services via Overslash. To connect, follow the instructions at: https://www.overslash.com/SKILL.md

1. Paste

Drop the block into any MCP-capable agent.

2. Connect

Give the agent an identity and grant it services.

3. Use

Start using integrations. Dangerous actions bubble up for approval.