Axel Dunkel

9 Followers
29 Following
40 Posts
Gründer Dunkel Cloud GmbH.
ToolMesh — Open-Source MCP Gateway für KI-Agenten. #MCP #OpenSource
Websitehttps://www.dunkel.cloud
ToolMeshhttps://toolmesh.io/

Just published: DADL - a declarative description language for REST APIs in LLM agent systems.

One YAML file per API instead of one MCP server per API. Code Mode keeps tool advertisement at fixed cost regardless of catalog size: 142x context reduction across 1,833 tools / 20 services in the public registry.

Paper: https://arxiv.org/abs/2605.05247 (cs.SE)
Spec: https://dadl.ai (CC BY-SA 4.0)

#MCP #AgenticAI #LLMagents #OpenSource

DADL: A Declarative Description Language for Enterprise Tool Libraries in LLM Agent Systems

The Model Context Protocol (MCP) is the standard interface between large language model (LLM) agents and external tools. At organizational scale, however, it exposes two structural problems. First, every API integration is shipped as a dedicated server process with its own deployment, dependency tree, and credential handling; recent empirical work shows the overwhelming majority of these servers are thin wrappers around REST APIs. Second, the per-tool registration model causes context window consumption to grow linearly with catalog size, forcing real deployments to expose only a small fraction of the APIs an organization actually uses. We present DADL (Dunkel API Description Language), a YAML format describing a REST API's endpoints, authentication, pagination, response shaping, and access classification in a single declarative file. A DADL file is interpreted by an execution layer at runtime; no per-API server process is deployed and no integration code is generated, though the runtime is itself a server. Because all tools share that runtime, credentials and authorization are managed centrally, and the catalog reaches the LLM through a fixed-size Code Mode interface independent of size. The result is an Enterprise Tool Library: a versioned, auditable collection of API integrations any team can extend, share, and consume through one authentication and authorization boundary. The DADL v0.1 specification is released under CC BY-SA 4.0, and a public registry contains 1,833 tool definitions across 20 services. On this catalog, Code Mode reduces the context cost of tool advertisement from approximately 142,000 tokens to approximately 1,000, a 142x reduction; the per-call cost of search and execute invocations is additional and depends on the task.

arXiv.org

Just launched ToolMesh on Show HN: a declarative way to give LLMs access to your full ops stack — Prometheus, OPNsense, NetBox, Hetzner, GitLab and more — via small YAML files instead of one MCP server per API.

When the pager goes off at 3am, I ask Claude "what is alerting, what changed in the last hour?" and it actually answers by chaining calls across 30 backends.

https://news.ycombinator.com/item?id=47933950

#LLM #MCP #OpenSource #ToolMesh

Show HN: ToolMesh – turn all your REST APIs into MCP tools via declarative YAML | Hacker News

Kommentar: KI-FOMO frisst Sicherheit

KI wird überall eingeführt – neuen Sicherheitsrisiken zum Trotz. Aber wenigstens all die alten Arten von Lücken könnte man vermeiden, findet Sylvester Tremmel.

https://www.heise.de/meinung/Kommentar-KI-FOMO-frisst-Sicherheit-11218162.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&utm_source=mastodon

#IT #KünstlicheIntelligenz #Kommentar #Security #Sicherheitslücken #news

Kommentar: KI-FOMO frisst Sicherheit

KI wird überall eingeführt – neuen Sicherheitsrisiken zum Trotz. Aber wenigstens all die alten Arten von Lücken könnte man vermeiden, findet Sylvester Tremmel.

c't Magazin

Vor einem Jahr fragte @jwildeboer ob #MCP das Ende öffentlicher APIs bedeutet — weil Agenten unkontrolliert auf sie losgehen wie ein DDoS.

Berechtigter Punkt. Die Lösung: ein Gateway zwischen Agent und API. Proaktives Rate Limiting, Retry-Budgets, Credential Isolation. Der Agent sieht nie den API-Key und kann nicht unkontrolliert feuern.

Genau dafür haben wir ToolMesh gebaut. Open Source, self-hosted.

https://toolmesh.io

#ModelContextProtocol #OpenSource #AIAgents #SelfHosted

ToolMesh

The secure execution layer between AI agents and your infrastructure

ToolMesh

Interne APIs sind einer der größten Bremsklötze für KI-Agenten im Unternehmen. Für die meisten wird es nie eine standardisierte KI-Schnittstelle (MCP) geben.

Heute stellen wir ToolMesh vor — ein Open-Source-Gateway, das REST-APIs in Minuten anbindet: 30 Zeilen YAML ersetzen einen ganzen MCP-Server. ACL, Credential Isolation, Audit Trail und Output-Filter inklusive.

16 APIs, 1.100+ Tools. Self-hosted, Apache 2.0.

https://toolmesh.io

#KI #MCP #ModelContextProtocol #OpenSource #AIAgents

ToolMesh

The secure execution layer between AI agents and your infrastructure

ToolMesh
Custom OIDC is now generally available! Users can create a tailnet and sign in to Tailscale with their own domain and any identity provider that supports OpenID Connect https://tailscale.com/blog/custom-oidc-ga/
Custom OIDC is generally available

We’re pleased to announce that custom OIDC is now generally available for all users. With custom OIDC, users can sign into Tailscale using any identity provider that supports OpenID Connect (OIDC). To use a custom OIDC provider with Tailscale, you must verify domain ownership by setting up a WebFinger endpoint.

Tailscale

Spam Comes To The Fediverse  

You may have noticed an increase in spam messages lately...

Wrote up a little blurb about what's going on from my perspective as a server admin, and a couple of options users and admins have to combat spam (not a lot of them at the moment, but some).

#mastoadmin #spam

https://hub.sunny.garden/2023/05/17/spam-comes-to-the-fediverse/

Spam Comes To The Fediverse

What's up with the spam lately? Spam wasn't unheard of on the fediverse in the past, but the past couple of weeks have seen several notable waves.

Sunny Garden Hub

Hey there -- we're Let's Encrypt, the free and open certificate authority serving over 300 million websites worldwide. We're new to Mastodon and are excited to get to know the infosec community in this new space!

https://letsencrypt.org/

#opensource #TLS #PKI #infosec

Let's Encrypt

Let's Encrypt is a free, automated, and open Certificate Authority brought to you by the nonprofit Internet Security Research Group (ISRG). Read all about our nonprofit work this year in our 2025 Annual Report.

Wir haben euch am Freitag an den #WorldBackupDay erinnert. Dabei haben uns einige interessante Antworten von euch erreicht❗

Findet ihr euch in manchen Aussagen wieder? 😏😬

Mozilla.ai – 30 Millionen US-Dollar für vertrauenswürdige Open-Source KI

Mozilla hat ein Start-up gegründet, das sich mit vertrauensvoller und offener KI beschäftigen soll. Startkapital: 30 Millionen US-Dollar von der Foundation.

https://www.heise.de/news/Mozilla-ai-30-Millionen-US-Dollar-fuer-vertrauenswuerdige-Open-Source-KI-7687856.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege

#KünstlicheIntelligenz #Mozilla #Startups #news

Mozilla.ai – 30 Millionen US-Dollar für vertrauenswürdige Open-Source KI

Mozilla hat ein Start-up gegründet, das sich mit vertrauensvoller und offener KI beschäftigen soll. Startkapital: 30 Millionen US-Dollar von der Foundation.

heise online