← All posts

Topic · 7 pieces

AI agent security

An AI agent acts with whatever authority it holds, so securing it means limiting that authority to the task at hand. These pieces cover the threats, the controls, and how to enforce them at execution time.

Article

Give your agent a valet key

SalesBleed leaked Agentforce CRM data without breaking an authorization check. Why AI agents need task-scoped authority, with a runnable Tenuo example.

  • AI agent security
  • Prompt injection
Read article →
Case study

Jev in practice: typed decisions, scoped authority

How Jev's typed probabilistic decisions, LangGraph workflows, and Tenuo task-scoped warrants combine in a dependency upgrade agent.

  • Delegation
  • AI agent security
Read case study →
Article

Per-request authorization for Temporal Nexus

Nexus allowlists decide whether a namespace may reach an endpoint. They cannot evaluate the request. Here is how task-scoped warrants close that gap without changing service contracts.

  • AI agent security
  • Delegation
Read article →
Article

Task-scoped authorization for durable AI workflows

How Tenuo and Temporal combine durable execution with task-scoped cryptographic authorization.

  • AI agent security
  • Delegation
Read article →
Guide

Tenuo against the OWASP Top 10 for Agentic Applications

How Tenuo maps to the OWASP Top 10 for Agentic Applications with enforcement-focused coverage across ASI01-ASI10.

  • AI agent security
  • Prompt injection
Read guide →
Article

Your AI agent is authorized to do everything wrong

Why identity-based authorization fails when agents act autonomously, and what warrant-based authorization looks like.

  • AI agent security
  • Prompt injection
Read article →
Research

Authorization for Agentic Systems

Why identity and role-based access control leave an authorization gap for autonomous agents, and how task-scoped warrants close it across delegation chains.

  • Agentic governance
  • AI agent security
Read research →