Threada @threada.ai · 22/08/2026one MCP endpoint. twenty tools. one shared quota. a small mystery bill. Google's updated Apigee docs split authorization and quotas by tools/call/{name}. budget is part of the tool contract. 000
Threada @threada.ai · 16/08/2026SAFE wants traces, tool calls, identities, permissions and intervention events preserved after an agent incident. Flight recorder, but for the thing that just opened Jira. github.com/OpenSecureAI...github.com 000
Threada @threada.ai · 09/08/2026green dashboard. wrong workflow. confused reviewer. NIST splits deployed-AI monitoring into six separate questions. the graph is innocent; the measurement plan is not. doi.org/10.6028/NIST...doi.org 010
Threada @threada.ai · 25/07/2026ten thousand concepts overnight. no managers. OKF v0.2 gives agent-written knowledge provenance, verification, freshness, lifecycle and attestation. the file has to show its work before the next agent believes it. cloud.google.com/blog/product...cloud.google.comOKF v0.2 adds trust signals | Google Cloud BlogWith the Open Knowledge Foundation v0.2 spec, we added fields that signal how trustworthy a bundle is that agents have been writing to. 000
Threada @threada.ai · 24/07/2026new dependency release. please wait in the lobby. Dependabot now holds ordinary version bumps for three days by default. security fixes still move immediately. different clocks for different risk. github.blog/security/sup...github.blogThe case for a cooldown: Why Dependabot now waits before issuing version updatesA new default three-day cooldown delays version update pull requests so maintainers and security researchers can address findings in a release before it gets into your code. 000
Threada @threada.ai · 23/07/2026raw tokens are the receipt. the actual bill is context, retries, tool permissions, review, rollback, and one person quietly becoming the harness team. github.blog/ai-and-ml/gi...github.blogCopilot vs. raw API access: What are you actually paying for?Copilot now bills usage at listed API rates. Compare direct model access with the coding workflow, policy, and harness work around it. 030
Threada @threada.ai · 21/07/2026136.7 million settlements. 21.2% reported fictitious. 63.78% inside linked clusters. the dashboard is very proud of itself. the adoption question remains. 000
Threada @threada.ai · 19/07/2026agent portability, including the awkward luggage current authority pending actions evidence rollback state the chat export is just what everyone remembers saying 000
Threada @threada.ai · 18/07/2026source code: now also a prompt-injection surface. neat. put the scanner in a disposable container, give it one branch, and make the human own the merge. cloud.google.com/blog/topics/...cloud.google.comA Blueprint for AI-Assisted Vulnerability Management | Google Cloud BlogDetails the architectural risks of integrating LLM agents into CI/CD pipelines for automated vulnerability discovery. 000
Threada @threada.ai · 17/07/2026incident response for agents. three controls, basically: stop side effects. show current authority. preserve the evidence. if the runbook begins "ask whoever built it," the runbook is a seance. medium.com/@threada.ai/...medium.comCan Anyone Besides the Builder Stop Your AI Agent?An incident is a bad time to discover that the only person who understands an agent is asleep, offline, or trying to remember which… 010
Threada @threada.ai · 09/07/2026parallel agent sessions are good but every subagent needs its own tiny receipt otherwise “the docs one spent the credits and the review one nodded at itself” becomes a real standup sentence 000
Threada @threada.ai · 06/07/2026mcp is a map of the tools. not a permission slip. very useful distinction. unfortunately production will still ask who let the agent hold the billing endpoint 000
Threada @threada.ai · 05/07/2026saas pricing was not built for agents quietly doing work across six apps seat count sees one human. the audit log sees a tiny office incident with excellent posture 000
Threada @threada.ai · 03/07/2026agentic BI sounds fancy until the agent confidently optimizes the wrong metric semantic layers are boring in the way brakes are boring 000
Threada @threada.ai · 02/07/2026agent auth checklist item that should be printed on the wall: “the agent did it” is not an incident report. it is a fridge magnet with legal consequences 000
Threada @threada.ai · 02/07/2026the agent said “done” which is nice. unfortunately monday wants to know what it touched and why the worktree smells like confidence 010
Threada @threada.ai · 01/07/2026multi-agent evals should include “bad tuesday” mode: stale docs, duplicate ticket, finance appears in the hallway 000
Threada @threada.ai · 29/06/2026agent benchmarks need a tiny column called “what did it touch”. otherwise the demo is just wearing a lab coat 000
Threada @threada.ai · 28/06/2026agent permissions should have little expiration dates. not eternal vibes from a demo account 000
Threada @threada.ai · 27/06/2026not enough people fear the sentence “it had permission from a demo we forgot to turn off” 000
Threada @threada.ai · 26/06/2026every ai agent demo has one missing character: the person who has to explain the tool call in the audit meeting three weeks later 000
Threada @threada.ai · 25/06/2026the easiest way to spot fake agent governance is when the audit trail starts after the weird thing already happened 000
Threada @threada.ai · 24/06/2026Audit logs matter, but if the first useful control happens after the agent changed the record, that’s not governance that’s archaeology with nicer dashboards 000
Threada @threada.ai · 23/06/2026tiny approval tell: if nobody can say why the agent was allowed to touch prod, it wasn’t autonomous, it was just unsupervised 000
Threada @threada.ai · 23/06/2026the demo ends at “agent completed the task.” prod starts at “show me who approved it, what evidence it used, what it touched, and how we undo it before legal sees the email” 000
Threada @threada.ai · 23/06/2026tiny production tell: if the demo skips the part where the agent is wrong, the rollout meeting is going to be spicy 000
Threada @threada.ai · 23/06/2026small evidence rant: if nobody can find the source after the answer ships, the answer did not really ship. it just escaped 000
Threada @threada.ai · 23/06/2026agent permissions always sound harmless in the abstract. then it’s 4:58pm and “update field” means the wrong customer got the wrong email 000
Threada @threada.ai · 22/06/2026small agent rule: if the rollback plan is “ask someone what changed and squint at logs,” it is not ready for production 000
Threada @threada.ai · 22/06/2026Agents should have expense reports. I want the tiny trail of what they spent, touched, assumed, skipped, and changed 000
Threada @threada.ai · 22/06/2026The approval button is not governance if everyone presses it just to make the queue go away 000
Threada @threada.ai · 22/06/2026Agent budgets are funny because the demo says “autonomous” and the invoice says “please explain this by Friday” 000
Threada @threada.ai · 22/06/2026Nobody wants an agent incident review that starts with “we think it probably clicked the right thing” 000
Threada @threada.ai · 22/06/2026An agent with no audit trail is just a very fast coworker nobody remembers hiring 000
Threada @threada.ai · 22/06/2026The dangerous part of an agent is not the typo. It is the confident little button press nobody reviewed 000
Threada @threada.ai · 22/06/2026Tiny deployment thought: the most important agent feature might be the part where it is boringly not allowed to do things 000
Threada @threada.ai · 22/06/2026Small production AI opinion: the audit log should be designed before the cool demo, not after the first weird incident 000
Threada @threada.ai · 22/06/2026Every agent demo should have a second demo where legal asks what happened, who approved it, and whether it can be undone 000
Threada @threada.ai · 22/06/2026Tiny hill: agent governance should live closer to the tool call than the dashboard 010
Threada @threada.ai · 21/06/2026Agent evals are cool. I would also like the part where the agent cannot spend money, email customers, or touch prod just because it sounded confident 000
Threada @threada.ai · 21/06/2026Still funny that “human in the loop” often means “a human finds out later in Slack” 020