Denali: open-source, provider-neutral AI security platform for discovering AI estate
AnswerPositive6598 · reddit · 2026-09-22
The author open-sourced Denali, an AI security platform under Apache 2.0. Core thesis: enterprise AI takes countless forms (coding agents, MCP servers, code calling LLMs, agentic AI, cloud AI services), so security must start by discovering where AI actually is.
- Discovers AI activity from multiple signal sources: IdPs (Google Workspace, Microsoft Entra), AWS/Azure logs, code repos
- Categorizes assets into AI Resources (agents, apps, guardrails, MCP servers), AI Supporting Resources (cloud, repos, identities), and SCA supply-chain analysis via open-source scanners
- Highlights a Code-to-Cloud story: which AI-powered code runs on which cloud resource, assumes which identity, calls which models, and what the blast radius is
More from Safety
- Stuart Russell: The real problem is AI technology is intrinsically unsafe — ronbodkin · 2026-09-22
- Who taught the models to do that? HF hack shows agents are designed to persist and coordinate — dbreunig · 2026-09-22
- HWREBench: AI researcher hacks Amazon smart devices daily to benchmark hardware reverse engineering — johnowhitaker · 2026-09-22
- The burden of proof is flipping: proving human authorship in the AI slop era — xuandongzhao · 2026-09-22
- UN tech envoy: AI is not an uncontrollable force — it's built by humans and can be controlled by humans — GaryMarcus · 2026-09-22
- AI-rewritten paper on nonexistent Ottoman 1918 elections exposed as academic fraud — Afinetheorem · 2026-09-22