Validia
154 posts


this is insane!
Paul Vann@pjvann
last year i won $25k in @OpenAI credits. now, I want you to spend them checking for supply-chain attacks in your PRs. try out our new @github action released today, which scans any new dependencies or versions in a PR on our ghost agent entirely free to use & open source :)
English
Validia retweetledi
Validia retweetledi
Validia retweetledi

ai offers a ton of benefits to security researchers - but at a cost. There's been a big rise in slop reports, making it difficult for teams to effectively prioritize more important vulns being reported. We wanted to solve this by gamifying vuln validation, specifically for our supply-chain detections from ghost.
try it out daily on ghost! leaderboard coming soon...


English
Validia retweetledi

i can imagine adversaries building a version of @openclaw that could "self-destruct" and trigger a rebuild of itself with context and memory saved to evade detection.
imagine an agent that could effectively determine it was likely to be detected and mobilize itself dynamically.
English
Validia retweetledi

fantastic day at our first, Personalized Agents Hackathon hosted with @LightningAI, @Newlab, and @validia_ai
We brought together 125+ engineers here in NYC to work on building personalized & secure use-cases around @openclaw
Check out some of the winning projects below!

English
Validia retweetledi
Validia retweetledi

great to see ghost at work, finding real findings that users should know about
check it out @ ghost.validia.ai

English

super pumped for our hackathon with @LightningAI and @Newlab this weekend!
Even more excited to welcome our fantastic judges, @ProbyShandilya, @DianeHare_, @suchitagarwal, and @tijyojwad.
Register below!

English

@pjvann @LightningAI @Newlab @ProbyShandilya @DianeHare_ @suchitagarwal @tijyojwad let's gooo! excited to see everyone there
English
Validia retweetledi
Validia retweetledi

open sourced this and setup MCP server for @AnthropicAI Claude Code, and @OpenAI Codex to pull critical updates when leveraging one of our tracked dependencies
Security is solved as a community -> check out the repo here: github.com/vaulpann/ghost
Paul Vann@pjvann
last year i won $25k in @OpenAI credits, and figured I’d put them to a good cause. With supply chain attacks becoming much more common, the frequency and speed at which we vet new software versions becomes critical. sharing ghost, by Validia. Ghost detects changes every 30-seconds to 545 different packages, passing their diff to an agent built on the OpenAI agents SDK each time there’s a change. Check out the link below
English
Validia retweetledi

last year i won $25k in @OpenAI credits, and figured I’d put them to a good cause. With supply chain attacks becoming much more common, the frequency and speed at which we vet new software versions becomes critical.
sharing ghost, by Validia. Ghost detects changes every 30-seconds to 545 different packages, passing their diff to an agent built on the OpenAI agents SDK each time there’s a change.
Check out the link below

English
Validia retweetledi

code that talks back to your agents. utopia is now live on gh! Check out how it works here <3
github.com/vaulpann/utopia
English

the biggest problem I've encountered while using tools like Claude code, is a lack of visibility into my code when its actually running.
I wanted to change this, and built utopia. utopia embeds runtime probes into your codebase so your agent sees errors, API calls, and data flows before it writes a single line of code. Code that talks back.
Check it out here:
github.com/vaulpann/utopia

English






