Field notes

Real incidents. Eight domains. One missing layer.

Writing on AI agent authorization, runtime control, standards, and the incidents that expose where existing security models stop.

Three lenses on the same problem

The blog stays narrow: understand the control category, inspect failures in the field, and translate standards into runtime enforcement.

01 · CATEGORY

Define the missing control

Explain why identity, model, application, and network controls do not authorize an agent’s individual tool call.

02 · INCIDENTS

Reconstruct what failed

Map public failures to specific checks that should have denied, escalated, or constrained the action.

03 · STANDARDS

Turn policy into enforcement

Translate compliance language into evidence, approval, budget, and authorization requirements at runtime.

Editorial principles

No vendor noise. No abstract fear.

Every article should leave the reader with a clearer model of the risk and a control that can be evaluated in a real deployment.

Start with evidence

Use incidents, architecture, and standards language instead of hypothetical catastrophe.

Name the missing layer

Be precise about what existing controls do well, and where their responsibility ends.

Show the control point

Explain where authorization sits in the request path and what decision it makes before execution.

Stay deployable

Connect the argument to policies, APIs, logs, approval flows, and measurable operational outcomes.