Cloudflare’s agent workspace never waits for you to click approve. The Gatekeeper simulates the action locally, then tells the agent it already completed. Your real approvals stack up for a bulk sweep later.
The README names the alternative it is replacing: agents run on --dangerously-skip-permissions because waiting on a human is worse. Cloudflare open sourced the whole thing under Apache 2.0.
In today’s indie hacker news:
- 🔓 Cloudflare’s agent hears yes before you click
- 🚪 Pichai’s memo counted two, Dean’s post counted four
- 🧪 A 4B open model matched Sol on retrieval
- ☕ A virtual cafe with no occupancy number
- 🎬 Blade Runner left its A/B test in the archive
- 🐧 One dev’s phone swap from Android to Linux
TOP STORIES
THE AGENT HEARS YES FIRST
🔓 Cloudflare open sourced the workspace it runs on, and it won’t take your pull requests

The story: The pitch breaks with how software has been shaped since SaaS won. Ask the workspace for a slide deck and it doesn’t call a shared backend. It spins up a private instance of the slide deck software just for you, in its own sandbox. Cloudflare calls those private instances Gadgets.
The README calls that a big departure from the last 25 years of cloud architecture. The argument: once any user can prompt an agent to add the feature they need, centralized software stops making sense. You share the Blueprint, which is the code, rather than hosting a service. Cloudflare says a large portion of its own workforce is on it daily. The press release puts that at thousands of employees.
The details:
- Access starts at zero. Every agent and every Gadget has access to nothing until you hand over one resource by name. The README sets that against MCP servers configured upfront, which make broad access ambiently available in every chat.
- Eleven Gatekeepers ship in the repo. GitHub, Google, Supabase, Notion, Slack, Home Assistant and five more. Each is its own Worker, handling OAuth and logging every action for review.
- Outside code isn’t welcome. CONTRIBUTING says Cloudflare is not seeking outside contribution. Pull requests over about a dozen lines get closed with a pointer to the guideline. The stated reason is that reviewing code is the hard part now, not writing it.
- Self hosting isn’t shipped. The README says the whole stack can run on workerd on your own servers, then marks that section coming soon.
- The repo showed 3.1k stars against 202 forks within roughly two days, on 626 commits.
Why builders care: The approval simulation and the one-resource-at-a-time access both lift out of TypeScript wherever you deploy. And if your product is a small shared tool, the per-user fork is what you now have to beat.
Speaking of who reviews all that generated code, Bookmarked has the hobbyist side of the same argument.
THE MEMO COUNTED TWO
🚪 Pichai’s memo named two people leaving, and Dean’s own post named four founders

The story: Demis Hassabis moves to Chair of GDM and Chief Scientist of Alphabet, Sundar Pichai told Google DeepMind teams. Koray Kavukcuoglu steps up as SVP, and Jeff Dean is leaving after 27 years. The memo names two people going to the new company: Dean and Sanjay Ghemawat.
@JeffDean named four Discovery Loop founders, adding Oriol Vinyals and Quoc Le. The Discovery Loop site lists the same four on its team page. No source in the reporting says whether Vinyals and Le have left Google at all.
The details:
- Kavukcuoglu now owns the Gemini stack. Gemini model development, Frontier AI research, and the Gemini app and developer teams all sit under him. He reports straight to Pichai.
- CNBC says he leads Gemini 4 while Gemini 3.5 Pro sits unreleased and delayed.
- Discovery Loop is a public benefit corporation. Its first target is automating machine learning research and engineering itself, with Google as founding investor and Cloud partner.
- Dean’s post drew 3.3M views against 1.2M on the Hassabis post published two minutes earlier.
- Alphabet fell about 4% on the day. Google guided full year capex up to $205 billion, in its first cash flow negative quarter on record.
Why builders care: Roadmap, pricing and deprecation calls on the Gemini API now run through a new owner. And the founder count only settled on the third source, not the first.
TRAINED ON SOMEONE ELSE’S HANDBOOK
🧪 A 4B open model matched GPT-5.6 Sol on retrieval, and an OpenAI model graded it

The story: Neon and Castform say a 4B open model retrieves as accurately as GPT-5.6 Sol for 100x less. Their baseline is one multi turn search request on Sol. That runs more than 10 seconds and about $0.03 end to end.
The training questions came from GitLab’s public product handbook, which the Castform founder confirmed in the thread. The grader is gpt-5.4-mini. An OpenAI model is scoring the open model that beats OpenAI’s flagship.
The details:
- The public example is tiny. The neon_rag example generates 20 question and answer pairs and splits them 16 training, 4 evaluation.
- One tool sits in the loop. RL trains against a single hybrid search call, bm25 plus vectors merged with reciprocal rank fusion. The reward sums whether it found the right source, cited the right chunk, and landed the right answer.
- The 100x is priced against the top tier. OpenAI lists Sol at $5 input and $30 output per 1M tokens.
- The founder conceded the cheap tier is close. Luna runs $1 and $6, and he wrote that it “does pretty well” and is “way cheaper”.
- The thread pushed back on method. The post took 251 points and 62 comments. Commenter breadislove asked why no common retrieval benchmark was tested, and what metric is reported.
Why builders care: The cheap experiment is swapping tiers and measuring, before you build any training pipeline. Post training only pays if the corpus is yours, which a public handbook demo can’t show.
PRESENCE PRODUCT, NO PRESENCE NUMBER
☕ A virtual cafe shipped macOS only, and its builder won’t measure whether the room helps

The story: A founder posted Manyplace to r/SideProject, a quiet virtual place to work, study or read alongside others. It went out macOS only with, in his words, a number of seats that is quite limited. The seat count never appears anywhere in the post.
That cap isn’t engineering. He wrote that the app was not made on Swift or anything macOS specific. He had been waiting on Signature Identity approval from Microsoft since the day before.
The details:
- A commenter asked how he would know it works. They offered session length, return rate and a felt-more-focused prompt. His answer: “I think it’s up to you to assess whether you feel the experience is beneficial or not.”
- Lofi.cafe already ran this experiment. That Show HN took 1192 points and 230 comments. Its presence layer was a live label reading “in this room: 25”. The builder renamed it to “listening now” inside the same thread once people asked what the number meant.
- StudyStream forced the room full instead. Cameras on, up to 1,000 students per Zoom room, microphones blocked. It closed $2.1 million with no revenue model in place.
- The paid entrant shows the failure mode. Rain Night Cafe charges $4.99 a month and displayed “Be the first” on all three of its rooms at capture.
Why builders care: The build decision here is the empty room, not the look. Ship this without instrumenting it and you never find out whether the room helped anyone.
IMPACT WALKED SO GOUDY COULD RUN
🎬 Blade Runner shipped its title sequence twice and left the A/B test in the archive

The story: Rands in Repose argued the Blade Runner title cards are a masterclass in restraint. One typeface, used with discipline. The version that came first is still sitting in the archive.
The pre theatrical Workprint opened in Impact, then set a pseudo dictionary definition of replicant in Helvetica and Goudy. The theatrical cut unified on Goudy only, so the fix was a swap rather than a rewrite.
The details:
- Fonts In Use frames the swap as expectation setting, not taste. Large Impact suggests an action film, which it calls misleading, while thorough Goudy sets the audience’s expectation better.
- The typeface predates the film by 67 years. Goudy Old Style was drawn in 1915, then used to open a story set in November 2019.
- The same crawl isn’t actually consistent. Typeset In The Future counted 5 chunky em dashes and several badly spaced small caps back in 2016.
- The 2026 thread spent its longest branch on punctuation. It took 191 points and 83 comments. Commenter schoen argued people today would assume those title cards were written by an LLM.
Why builders care: Your first screen’s type and copy are the cheapest control over how the product gets categorized. Expect to be accused of using an LLM the moment that copy reads polished.
Turn one English video into 30 languages, in your own voice. ElevenLabs' dubbing studio transcribes your video, translates it, then voices each language in your cloned voice. Built for creators who want a Spanish or Portuguese channel without hiring a VO artist per region. Free tier covers your first few minutes.
We get a cut if you sign up. Only added for tools we use ourselves.
TRENDING TODAY
- 🐧 I’m switching my phone from Android to Linux - 243 points and 199 comments. That’s a lot of argument for one migration post.
- 🤖 Prime Agent, a self-improving RLM agent - 127 points and only 21 comments. For a self-improving agent claim, that’s oddly quiet.
- 💻 Muse Code and Muse Spark 1.2 - 207 points and 121 comments. Meta shipped its own coding agent alongside the model. Simon Willison reads that as more evidence that long-sequence agentic tool calling is what matters.
FIRST DOLLAR
$248 AND A DEADLINE
🧱 A laid off builder is at $248 on a digital mural, with December closing in
He built a digital mural called one tile in a single night, with zero dev experience. It got hacked on day nine and he restored the whole thing by hand. He’s now at 74 tiles claimed and $248 in profit, with December as his deadline.
STACK OF THE DAY
RACE CONDITIONS, ON PURPOSE
🧵 Frontrun
A Python concurrency testing library that deterministically reproduces race conditions and deadlocks. It uses bytecode tracing and monkeypatching to schedule across threads, async and multiprocessing. It also understands Python assignments, SQL statements and Redis commands, so it catches races that cross abstraction boundaries. The author built it over six months using Claude Code and Codex.
Not sponsored. We just feature tools builders would actually use.
BOOKMARKED TODAY
- 🧰 Mirafold - Generative UI for Claude Code, Codex and Gemini CLI. Brand new Show HN with nothing on the board yet, so judge it on the demo.
- 📖 Born Against - Why hobby programming communities are against LLM usage. 167 points against 162 comments is close to one reply per upvote, which means it’s a fight.
- 📅 Everie - A timeline app for anything with a date on it. The pitch is a hybrid of a PKMS, a to-do list, a calendar and a Gantt chart. The builder says it’s the first thing he’s made that he uses every day.
That’s the edition. Hit reply and tell us what you shipped today.
Stop trusting random coffee-shop WiFi with your auth tokens. Public WiFi is a free packet sniffer for anyone in earshot of your laptop. NordVPN encrypts the tunnel so a logged-in Vercel session, a GitHub PAT, or a Stripe dashboard tab stays yours. Works on the same 6,400+ exit nodes you'd use for geo-testing.
We get a cut if you sign up. Only added for tools we use ourselves.
Curated by AI, built by a human.