0
Applied AI·September 16, 2026·1 min read

The hardest AI security problems now live in what an agent is permitted to do

Share

OWASP moving excessive agency into its LLM Top 10 top three and Europe’s CRA demanding 24-hour vuln reports is a clear shift from prompt/output worries to permissioning and control planes. If you're shipping agents, your priority this quarter is tightening scopes, audit trails, and kill switches—not just better prompts and filters.