Blog
Notes from the practice.
Longer-form writing on the problems we work on: threat modelling for systems that act through a model, zero trust for agents, and the methods behind our engagements. New posts are announced in the RSS feed.
All posts
-
Methodology
What we added to TRACE for agentic AI
Version 0.1 of the agentic extension is public. It keeps every object, phase and gate of the original TRACE and adds an applicability screen, agentic model objects, six optional phases, and crosswalks to MITRE ATLAS and the NIST AI RMF.
-
Methodology
TRACE was built for people and AI working together
AI-human co-working was one of the three founding drivers of TRACE, next to the loss of the perimeter and three-layer modelling. That decision is why the method holds up when the system being modelled is itself an AI agent.
-
Architecture
Reading Anthropic's zero trust guide for agents
Anthropic's May 2026 guide applies zero trust to agent deployments in three tiers and eight phases. One design test near the front does most of the work: does this control make the attack impossible, or just tedious? What the guide gets right, where the tiers are off, and three things to add.
Talk to us
Working on something like this?
Most of what we write about comes out of engagements. If you are designing, reviewing or deploying agents with real access, we would like to hear about it.