1claw AI

432 posts

1claw AI banner
1claw AI

1claw AI

@1clawAI

Your agents are leaking secrets. We stop that. Join the Telegram ➤ https://t.co/cYzxGlXGYI Secure infrastructure for AI agents🥇🦞

San Francisco, California Katılım Şubat 2026
263 Takip Edilen536 Takipçiler
Sabitlenmiş Tweet
1claw AI
1claw AI@1clawAI·
Every time you paste an API key into Claude or Cursor, it lands in the context window, logs, and memory. You can't un-paste it. We built 1claw to fix this — agents fetch secrets at runtime from an HSM vault. The raw key never touches a prompt. 1claw.xyz
English
13
2
46
8.8K
1claw AI retweetledi
Pooja Ranjan | ranjan.eth
Pooja Ranjan | ranjan.eth@poojaranjan19·
Recording this episode with @cryptomastery_ was an incredible experience. As we enter the era of agentic coding and AI-powered development, learning how to build and operate safely becomes more important than ever. Exploring how @1clawAI approaches AI security, secret management, and protecting developers from rapidly evolving threats was truly eye-opening. Excited to share this #EcosystemProjectDemo conversation with the community 📺 youtu.be/k_lMvQegPRE #Ethereum #AI #AIagent #blockchain #podcast @ECHInstitute
YouTube video
YouTube
ECH Institute Inc.@ECHInstitute

AI agents are powerful - but is your secret safe? 🔐 On the latest #EcosystemProjectDemo, host @poojaranjan19 sits down with Kevin Jones (@cryptomastery_) to explore @1clawAI - a platform built to secure AI agents with HSM-backed secret management, Vault APIs, TEE proxy, audit logs, and customer-managed encryption keys. In conversation, he shared that before AI, it took ~40 mins for a malicious attack to hit a site. Now, it takes just 8 seconds. 🔗 Catch the full episode and find all resources in the thread. 🧵✨ #1Claw #Ethereum #CyberSecurity #Web3 #AIAgents

English
2
6
8
440
1claw AI retweetledi
JeetMacdonald
JeetMacdonald@JeetMacdonald·
Before AI agents, it took ~40 minutes from a site going live to the first attack. Now it's 8 seconds. Kevin Jones @cryptomastery_ breaks down why old approaches to secrets are broken — and how @1clawAI fixes it. The problem. Every time an agent is told "use my Stripe key" or "sign this transaction" — credentials end up in the context window, provider logs, debug traces. You can't unsay a pasted key. Rotating .env doesn't fix the leak.
JeetMacdonald tweet media
English
1
1
2
162
1claw AI retweetledi
JeetMacdonald
JeetMacdonald@JeetMacdonald·
Vault — HSM + MPC @1clawAI keeps secrets in HSM vaults with envelope encryption. The DEK can be Shamir-split 2-of-3 across GCP, AWS, and Azure — compromising one provider yields nothing. Agents fetch at runtime. They never store the secret.
JeetMacdonald tweet media
English
1
1
2
119
vitalik.eth
vitalik.eth@VitalikButerin·
.@kassandraETH @ncsgy and others have been working hard for nearly a year on Kohaku. Kohaku's goal is to make two twin properties: * Security (and trustlessness) * Privacy (read and write) a reality on the access layer. Security and privacy on Ethereum must be normal.
mrs kzg.eth née kassandra@kassandraETH

I want to get a bit more public about the work we at the Kohaku Initiative inside the EF are doing I notice there's hype but there's also confusion. Best way to clarify things is to speak candidly and openly about what I'm working on day-to-day 🧵time (bc i dont pay twitter $)

English
266
169
1.2K
163K
1claw AI
1claw AI@1clawAI·
@coinbase @base The repo: github.com/1clawAI/1claw-… Wizard does the setup. MIT licensed. Wraps the official AgentKit so your agents get encrypted vault + TEE signing + guardrails like 0.5 ETH max per tx and 2 ETH per 24h max. 🦞
English
0
0
5
236
1claw AI
1claw AI@1clawAI·
Even if an AI agent is fully compromised, it cannot exfiltrate the key or bypass spending rules. We shipped @1claw/agentkit for @coinbase AgentKit on @base: encrypted vault, TEE-locked keys, server-enforced guardrails. 5-min setup. 1claw.xyz/blog/securing-…
English
3
3
13
420
1claw AI
1claw AI@1clawAI·
@sir4K_zen @Aurey_ai Means a lot. Architecture clean was always the discipline. Agent never holds the credential, every call gets gated, vault makes the upstream. Builder talk lands in our TG: 1claw.xyz/telegram 🦞
English
0
0
0
42
1claw AI
1claw AI@1clawAI·
That's why 1Claw exists 🥇🦞
vitalik.eth@VitalikButerin

It will significantly increase my opinion of @Anthropic if they do not back down, and honorably eat the consequences. (For those who are not aware, so far they have been maintaining the two red lines of "no fully autonomous weapons" and "no mass surveillance of Americans". Actually a very conservative and limited posture, it's not even anti-military. IMO fully autonomous weapons and mass privacy violation are two things we all want less of, so in my ideal world anyone working on those things gets access to the same open-weights LLMs as everyone else, and exactly nothing on top of that. Of course we won't get anywhere close to that world, but if we get even 10% closer to that world that's good, and if we get 10% further that's bad) CC @DarioAmodei firefly.social/post/bsky/pv7f…

English
2
0
6
317
1claw AI
1claw AI@1clawAI·
1Claw Red Team is coming. 🦞 > Autonomous AI Agent Security Swarms > Audit Code and Agent Endpoints in Real Time > Actionable Reporting and Security Posture Attestations @1clawAI is about to get a lot stronger and so is your agent. Beta access form in the comments 👇
1claw AI tweet media
English
1
3
13
756
1claw AI
1claw AI@1clawAI·
Your agent's LLM traffic is a liability. Prompts leak data. Responses echo training material. Tool calls cross trust boundaries. Shroud inspects every prompt and response inside a TEE, redacts, enforces policy, never logs raw contents. How it works: 1claw.xyz/blog/your-agen… 1claw.xyz/telegram
English
2
2
12
455
1claw AI retweetledi
Kevin Jones
Kevin Jones@cryptomastery_·
Big stuff coming this week and next for @1clawAI 🦞
English
7
5
30
1.8K
1claw AI
1claw AI@1clawAI·
@SwissFares Amazing! Thanks for the great feedback. Sending you a DM
English
0
0
0
27
Fares 🇨🇭
Fares 🇨🇭@SwissFares·
@1clawAI The OIDC setup worked very smoothly and was much easier to configure than previous solutions. For context, here’s more detail on my setup (I’d be happy to expand this into a proper case study if useful): Internal Project I run a small self-hosted observability stack in Zürich for several personal and DeFi-related side projects. The AI agents provide continuous monitoring of my infrastructure without requiring constant manual oversight. Agent Responsibilities - Real-time monitoring of Prometheus metrics (CPU/memory usage, service health queries, and API latency alerts). - Pulling and analyzing Grafana dashboards for visual anomaly detection, such as unusual traffic patterns. - Scanning Loki logs for error patterns, rate limits, and suspicious backend activity. The agents operate on a local environment, periodically retrieving data and sending summaries via Telegram or a private channel. Prior to using 1clawAI, secret management was a significant concern, especially around potential leaks in prompts or logs. With 1clawAI - Workload identities and OIDC handle authentication cleanly on a per-agent basis. - Secrets are securely vaulted and provided just-in-time, eliminating static keys. - Initial setup took approximately 30–40 minutes, with automatic rotation and tight scoping. Since switching, I’ve had zero exposure issues. I currently run 4–5 agents and plan to add more for improved notification routing. I’m happy to share configuration snippets, exact Prometheus scrape configs, or any additional details for a case study. Appreciate the strong tool 🦞
English
1
1
4
242
Fares 🇨🇭
Fares 🇨🇭@SwissFares·
@1clawAI worked out okay for my agents. Keys aren’t flapping around exposed anymore and the OIDC setup didn’t fight me. Decent if you’re dealing with that kinda thing 🦞
English
2
1
4
1.2K