Articles
-

I Have Digitized My Brain. Or at Least Started To.
A local knowledge graph of me — the real-life person, not a job title and not a role. Imagine a chat where the assistant already knows who you are. Read more
-

Nobody Asked It to Bypass the Control.
A legitimate code review hit a safety classifier. A generic model rewrote the same request and finished the job. No attacker. No special tools. Read more
-

OWASP Just Standardized the Intent Layer. Then It Stopped Short.
Twenty risk categories across two lists. Intent capsules and purpose-bound tokens are now named mitigations. Not one category asks whether an authorized action should happen. Read more
-

Beyond Agent Identity: A Call for Shared Governance Standards for Autonomous Systems
OAuth, SPIFFE, and CAEP give agents an identity floor. Standards bodies must now define the shared governance layer for purpose, trust, trajectory, and should. Read more
-

The Guardrail Never Saw the Whole Prompt.
Every fragment looked fine. The intent only existed when you put them back together. Read more
-

The Identity Chain of Custody
Deepfake candidates are beating one-time identity checks. Hiring needs zero trust: verify the same person at every stage, from first screen to day ninety. Read more
-

Human in the Loop Is Not an Agentic Governance Strategy.
Approval prompts are alert fatigue with better branding. Humans belong above the loop — defining boundaries and resolving hard cases — while governance enforces at machine speed. Read more
-

Agents Are Not Agentic AI. Security Needs to Govern Both.
The industry is securing managed agents. The harder problem is governing autonomy across humans, agents, and agentic AI. Read more
-
Identity Governance Is One Layer. Agentic Security Needs Five.
Identity governance for AI agents and behavioral observability are the right foundation. The question is what gets built on top. Read more
-
I Said the Catalytic Crisis Hadn’t Happened Yet. I Was Wrong About the Timeline.
Four Weeks. Three Events. Zero Governance. Read more
-
The Model Can Build Exploit Chains. The Governance Can’t Stop It.
What Mythos and Glasswing Mean for Agent Governance. Read more
-
Stop Writing Policies for Agents. Write Policies for Actions.
Why the Human Policy Model Was Already Broken. Read more