Topic · 7 pieces
AI agent security
An AI agent acts with whatever authority it holds, so securing it means limiting that authority to the task at hand. These pieces cover the threats, the controls, and how to enforce them at execution time.
Give your agent a valet key
SalesBleed leaked Agentforce CRM data without breaking an authorization check. Why AI agents need task-scoped authority, with a runnable Tenuo example.
Read article →Jev in practice: typed decisions, scoped authority
How Jev's typed probabilistic decisions, LangGraph workflows, and Tenuo task-scoped warrants combine in a dependency upgrade agent.
Read case study →Per-request authorization for Temporal Nexus
Nexus allowlists decide whether a namespace may reach an endpoint. They cannot evaluate the request. Here is how task-scoped warrants close that gap without changing service contracts.
Read article →Task-scoped authorization for durable AI workflows
How Tenuo and Temporal combine durable execution with task-scoped cryptographic authorization.
Read article →Tenuo against the OWASP Top 10 for Agentic Applications
How Tenuo maps to the OWASP Top 10 for Agentic Applications with enforcement-focused coverage across ASI01-ASI10.
Read guide →Your AI agent is authorized to do everything wrong
Why identity-based authorization fails when agents act autonomously, and what warrant-based authorization looks like.
Read article →Authorization for Agentic Systems
Why identity and role-based access control leave an authorization gap for autonomous agents, and how task-scoped warrants close it across delegation chains.
Read research →