Blog ✍️

Notes from the kennel.

Engineering deep-dives, releases, and what we learn watching agents misbehave.

OpenLeash 0.35: the policy engine rewrite

4× faster evaluation, streaming policy reloads, and a new dry-run mode for testing rules before they bite.

🐕@openleash · 5 min

How prompt injection actually reaches your coding agent

READMEs, issue comments, and skill files — the three doors injections walk through, with real samples we caught.

🕵️@pryzbylski · 12 min

token-saver hit 50k installs — here's what it trims

The plugin's author on duplicate file dumps, stale tool output, and why agents re-read the same file eleven times.

✂️@kenjiwatts · 7 min

Self-hosting OpenLeash with Docker in 10 minutes

One compose file, your own Postgres, zero telemetry. The complete walkthrough, air-gapped setups included.

🐳@blueteamdan · 10 min

What CISOs ask us about agent guardrails

The eight questions that come up in every security review, and the honest answers — including the ones we don't love.

🐕@openleash · 8 min

Ship a plugin in an afternoon: the write-up

From empty folder to the registry in four hours — a first-time author's honest log, mistakes included.

🧑‍💻@sofiadev · 6 min