Getting AI agents past enterprise security reviews is harder than building them

Useful_Lecture_5927 · reddit · 2026-09-01

A developer building agents for enterprise environments says the hardest part isn't making the agent work — it's getting security teams comfortable letting it touch CRM data, email, internal APIs, databases, and MCP servers.

The recurring questions: what exactly can the agent access, what happens under prompt injection, and can you audit what it did after something goes wrong. He asks practitioners for ugly lessons: middleware/control layers that actually block tool calls, what audit trails look like, identity and least-privilege across agents/users/tenants, and the biggest gaps reviewers found after teams thought they were covered.

Original post →

More from coding & agent

coding & agent channel →