Technical Guides
All articles in the Technical category
AI Agent Access Control: Least Privilege, Entitlements, and Human Approval
Design AI agent access control across identity, entitlements, runtime policy, human approval, revocation, and evidence with a reusable review checklist.
AI Agent IAM Reference Architecture: Identity and Access
Design AI agent identity, delegation, least privilege, approvals, entitlement review, revocation, and evidence with reusable diagrams and controls.
How to Build an AI Agent Kill Switch: Interception Architecture
An AI agent kill switch needs runtime cancellation, pre-execution denial, credential revocation, workload isolation, and evidence. This architecture shows how the controls work together.
OWASP Top 10 for Agentic Applications 2026: Runtime Controls, Audit Evidence, and Tests
Map every OWASP Top 10 for Agentic Applications 2026 risk to a runtime control, evidence artifact, and reproducible audit test.
MCP Audit: Secure and Govern Every Tool Call
A technical guide to MCP security and governance: inventory tools, gate calls with policy and approval, record outcomes, and export verifiable evidence.
How to Implement SAFR: Architecture, Patterns, and Build vs Buy
Implementing MAS's SAFR framework: reference architecture, native vs gateway deployment, control calibration, escalation operations, and build vs buy.
AI Agent Permissions: Audit Access Rights and Entitlements
Audit AI agent access rights across identity, delegation, tools, MCP servers, data boundaries, approvals, revocation, and least-privilege evidence.
