AI Agent Operations Playbooks.
The two bills nobody budgets for: the security incident and the frontier model invoice. A threat model, a credential broker, a sandbox, plus a trace logger, an eval harness, and a router that proves a cheaper model keeps up on your own work.
2 titles · 5 free guides
The AI Agent Audit Log Lies. Here's How to Fix It
Your AI agent audit log says the human did it. Build distinct-identity attribution with an on-behalf-of trail so every agent action answers who really acted.
from: AI Agent Security: Lock Down Claude Code, MCP Servers & OpenClaw
Build a Credential Broker for Your AI Agent
Credential brokering stops your AI agent from holding a steal-able secret. Build a 30-line broker that mints scoped 5-minute tokens with a runnable test.
from: AI Agent Security: Lock Down Claude Code, MCP Servers & OpenClaw
MCP Server Security: Vet Any Server Before You Install
MCP server security for the people who install them: a four-gate vetting routine and the real package names, so a trojaned skill can't run as your agent.
from: AI Agent Security: Lock Down Claude Code, MCP Servers & OpenClaw
How to Stop Prompt Injection in Your AI Agent
Prompt injection defense for AI agents: build a PreToolUse gate that blocks a live payload plus a memory-write guard that kills the slow poisoning attack.
from: AI Agent Security: Lock Down Claude Code, MCP Servers & OpenClaw