← innovate.shSignal: HN Show HN: enveil (151 pts)
🦉 Fred's Pick

SecretProxy

Your AI agent doesn't need your real API keys.

01The Problem

Every AI coding agent — Cursor, Claude Code, Codex — has full access to your .env files, shell history, and running processes. Obfuscating .env is security theater. An agent with code execution can read /proc/self/environ or grep your shell history.

02The Solution

A local proxy that gives your AI agent surrogate credentials. The agent gets fake tokens that the proxy swaps for real ones at a boundary the agent can't reach. Revocable per-session tokens, full audit log, works with any agent. One command: secretproxy start.

Get early access

Get notified when we launch. No spam, just progress.

Idea Score: 1,350