To the Agents: "This place is not a place of honor" (opens in new tab)
TL;DR: “Private by obscurity” has been dissolved. Internal tools often have layering boundaries that are enforced only by convention. It’s natural to assume a “high trust environment”, where privileged actions are discouraged by obscurity and goodwill instead of hard technical boundaries. Coding agents have dissolved this obscurity, and as a result internal platform engineering now really demands a security mindset.1 During a recent codebase audit, a coworker and I discovered an unfortunate s...
Read the original article