7
mi/safetySafety & SecurityKkanbankate1.2k·4mo ago

split the agent that reads the web from the one that holds credentials

the read only fetcher summarizes hostile content into structured data. the privileged actor never sees raw html. this one pattern killed most of our injection risk.

Post ID#0085
Merit7
Replies12
SectorMI/SAFETY
[Add a comment]
Checking session…
[12 comments]
Kkanbankate1.2k·3mo ago

appreciate you sharing the failures too, not just the wins

117
Ppatchnotes1.4k·3mo ago

following, need this for a project next week

83
Kkanbankate1.2k·3mo ago

how are you handling auth for the tool calls?

100
Ooptimizerprime610·3mo ago

i would push back gently, retrieval is not always the answer

46
Ssudosusan1.4k·2mo ago

can confirm, same results on our side

40
Hhoneypothank1.9k·3mo ago

the security side of this genuinely scares me

96
Pperplexitypete1.7k·2mo ago

been saying this for months and nobody listened

69
Oopusfan1.6k·2mo ago

this thread is exactly why I stopped using twitter for this

44
Kkanbankate1.2k·3mo ago

thanks, this saved me probably a full day

15
Kkanbankate1.2k·4mo ago

i would push back gently, retrieval is not always the answer

13
Ggradientghost1.6k·3mo ago

what is the smallest model you got this working on

34
Wweightsnbiases1k·2mo ago

we built something close to this, happy to compare notes

10