惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

博客园 - 聂微东
MyScale Blog
MyScale Blog
The GitHub Blog
The GitHub Blog
C
Check Point Blog
M
MIT News - Artificial intelligence
U
Unit 42
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
H
Help Net Security
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
D
DataBreaches.Net
大猫的无限游戏
大猫的无限游戏
D
Docker
Last Week in AI
Last Week in AI
IT之家
IT之家
F
Fortinet All Blogs
A
About on SuperTechFans
P
Proofpoint News Feed
The Cloudflare Blog
酷 壳 – CoolShell
酷 壳 – CoolShell
B
Blog RSS Feed
博客园_首页
月光博客
月光博客
博客园 - 司徒正美
Y
Y Combinator Blog

DEV Community

Authentication Security Deep Dive: From Brute Force to Salted Hashing (With Java Examples) Why AI Systems Don’t Fail — They Drift Spilling beans for how i learn for exam😁"Reinforcement Learning Cheat Sheet" I Replaced Chrome with Safari for AI Browser Automation. Here's What Broke (and What Finally Worked) How Python Borrows Other People's Work The $40 Architecture: Processing 1 Billion API Requests with 99.99% Uptime Vibe Coding: A Workflow Guide (From Zero to SaaS) Most webhook security guides protect the wrong side. The scary part is delivery. Headless CMS for TanStack Start: Build a Blog with Cosmic EU Age Verification App "Hacked in 2 Minutes" — What Actually Happened Comfy Cloud’s delete function does not actually remove files Running AI Models on GPU Cloud Servers: A Beginner Guide Event-driven media intelligence with AWS Step Functions and Bedrock I scored 500 AI prompts across 8 quality dimensions — here's what broke How to Call Google Gemini API from Next.js (Free Tier, No Backend Needed) The Portal Protocol: Reclaiming Human Connection in the Age of AI How to Fix Your Team's Scattered Knowledge Problem With a Self-Hosted Forum Intro to tc Cloud Functors: A Graph-First Mental Model for the Modern Cloud Designing Multi-Tenant Backends With Both Ownership and Team Access I Built a Neumorphic CSS Library with 77+ Components — Here's What I Learned PostgreSQL Performance Optimization: Why Connection Pooling Is Critical at Scale Cómo construí un SaaS multi-rubro para gestionar expensas en Argentina con FastAPI + Vue 3 🚀 I Built an Ethical Hacking Scanner Tool – Open Source Project I Replaced /usage and /context in Claude Code With a Single Statusline A Pythonic Way to Handle Emails (IMAP/SMTP) with Auto-Discovery and AI-Ready Design I Collected 8.9 Million Polymarket Price Points — Here's What I Found About How Markets Really Move EcoTrack AI — Carbon Footprint Tracker & Dashboard Everyone's Using AI. No One Agrees How. 5 self-hosted ebook managers worth trying in 2026 Building Your First AI Agent with LangChain: From Chatbot to Autonomous Assistant
Waymark v4.7.0 is Live — The Ultimate MCP Security Layer
Shaiful Isla · 2026-05-15 · via DEV Community

Shaiful Islam Shabuj

Just shipped: 30% faster policy enforcement, real-time approvals dashboard, and better error messages.

The Problem We Solve

AI agents like Claude are awesome for code generation, but they can:

  • 😱 Read your .env files
  • 💥 Delete entire directories
  • 🗂️ Modify sensitive database schemas

Waymark prevents this by sitting between your agent and the MCP tools.

What's New

⚡ Performance

  • Policy evaluation: 30% faster
  • Dashboard renders: 50% lighter
  • New indexed database queries

🎯 Better UX

  • Clearer error messages with reasons
  • New CLI commands for testing policies
  • Real-time action telemetry

🔐 Security Improvements

  • Fixed symlink bypass issue
  • Transactional approval workflow
  • Immutable policy versions

Quick Example

{
  "allowedPaths": ["./src/**"],
  "blockedPaths": [".env", "secrets/"],
  "requireApproval": ["./migrations/**"],
  "blockedCommands": ["rm -rf", "DROP TABLE"]
}

Enter fullscreen mode Exit fullscreen mode

→ Now Claude can write code safely while sensitive files stay protected.

The Numbers

Scenario Result Status
Read allowed file ALLOW ✅ Works
Read blocked file BLOCK ❌ Blocked
Write requires approval PENDING ⏳ Dashboard review
Dangerous command BLOCK ❌ Blocked
Safe shell command ALLOW ✅ Works

100% policy enforcement across all scenarios.

Get Started in 2 Minutes

npm install -g @way_marks/cli@latest
npx @way_marks/cli init --template secure
npx @way_marks/cli start

Enter fullscreen mode Exit fullscreen mode

Your dashboard opens at http://localhost:47000


Key Features

Real-time policy enforcement — Every MCP call is validated

Approval workflows — Human review for sensitive changes

Full audit trail — Every action is logged to SQLite

Dashboard UI — View policies, stats, action history

Zero breaking changes — Upgrade from v4.6.x safely

CLI tools — Test policies before deployment


What's Next?

🚀 v4.8.0 (Q3 2026)

  • Multi-agent coordination
  • Browser IDE extension
  • Cloud-hosted dashboard

Check the tool


Waymark v4.7.0 is ready. Download it today and build with confidence.

Safe AI collaboration starts here. 🚀


Published May 15, 2026 · Open source · MIT License