Fetching from the wire…
OSS2026-07-25 · source-backed
OneCLI, Apache-2.0, attacks a problem every agent builder has: agents need API access, and embedding live secrets in each agent multiplies exfiltration surface. Agents get placeholder keys; a Rust gateway on port 10255 intercepts outbound HTTP, matches host and path patterns against an AES-256-GCM-encrypted store (PostgreSQL via Prisma), and injects the real credential. "Agents never see the secrets." Ships a Next.js dashboard on port 10254, scoped per-agent access tokens, and Bitwarden integration. 2.8k stars, 307 commits. This is the most concrete answer yet to a threat model where the failure was always a live secret sitting somewhere readable.
Each link below shares sources, entities, or timing with this story.
Shared entities / Same source domain / Shared topic / Earlier coverage / Tension
Both cover AES, GCM, Rust; reported by the same outlet (github.com); overlapping topics (access, agent, secret).
Goose uses Rust / Shared entities / Same source domain / Shared topic
Linked by a graph relationship (Goose uses Rust); both cover Apache, Ships; reported by the same outlet (github.com).
Mnemo built by Rust / Shared entity: Rust / Same source domain / Shared topic / Earlier coverage / Tension
Linked by a graph relationship (Mnemo built by Rust); both cover Rust; reported by the same outlet (github.com).
Codex CLI uses Rust / Shared entity: Rust / Earlier coverage
Linked by a graph relationship (Codex CLI uses Rust); both cover Rust; earlier Rust coverage from 2026-05-17.
Shared entity: Rust / Same source domain / Shared topic / Earlier coverage / Tension
Both cover Rust; reported by the same outlet (github.com); overlapping topics (access, agent, star).
Codex CLI uses Rust / Shared entity: Ships / Same source domain / Earlier coverage
Linked by a graph relationship (Codex CLI uses Rust); both cover Ships; reported by the same outlet (github.com).
Codex CLI uses Rust / Shared topic
Linked by a graph relationship (Codex CLI uses Rust); overlapping topics (access, agent).
Zerostack uses Rust / Shared entity: Rust / Same source domain / Earlier coverage
Linked by a graph relationship (Zerostack uses Rust); both cover Rust; reported by the same outlet (github.com).