We're optimizing agent token costs fast — but who's designing agent authorization boundaries?
Straight_Condition39 · reddit · 2026-10-05
The author argues the agent ecosystem is racing to cut token costs (context compression, caching, cheaper-model routing) because feedback is immediate, while security has a slow feedback loop: broad agent access that causes no visible harm for months gets assumed safe.
Key points:
- Agents are moving from answering questions to reading files, executing commands, calling tools, spawning processes, and modifying infrastructure
- When an agent chains Agent → bash → Python → Terraform → cloud, where does its authority end? Should Python inherit all user permissions? Should Terraform know the request came from an AI?
- "Sandbox everything" isn't the answer; the real emerging question is identity: humans have identity, workloads have identity — do agents need their own?
Most teams, the author suggests, are still in the "give it access and make it work" phase.
More from coding & agent
- Cloudflare Agents SDK adds Pi Durable harness for crash-resilient long-running agents — mitsuhiko · 2026-10-05
- Codex team pledges daily improvements for 28 days or a full reset — lxfater · 2026-10-05
- OpenAI Agents API in 10 steps: GPT-6.1 Sol nears GPT-6 Astra at one-fifth the price — Roger_M_Taylor · 2026-10-05
- Engineer 'fired herself' from the loop, runs 24/7 agent fleet in Grok Bot — the talk Musk reposted — Roger_M_Taylor · 2026-10-05
- DIGI-FUZE: a retro console where AI fuses any two game cartridges into a new game — Flomerboy · 2026-10-05
- One defaults write command unlocks forbidden targets for macOS Computer Use — GabGarrett · 2026-10-05