Agent security

An agent may be capable of taking an action without being authorized to do so. We look for infrastructure that makes this distinction technically enforceable across users, tools, workflows and autonomous systems.

Aallowed ⊂ Apossible
  • Agent identity and delegated authority
  • Least-privilege permissions and scoped credentials
  • Runtime policy and tool-call controls
  • Revocation, containment and emergency stop mechanisms
  • Audit trails that explain who authorized what

Secure infrastructure

The same control logic extends into compute and deployment. Protecting model weights, data and execution environments matters most when controls can be verified and when operators retain the ability to change, revoke or recover access.

What we invest in

We back technical security layers that let capable systems operate with bounded authority. The strongest products make autonomy practical because they make misuse, privilege escalation and uncontrolled tool access harder.

Discuss this thesis ↗