<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Mostly Harmless blog</title>
    <link>https://mhl42.ai/blog</link>
    <description>Notes from the Mostly Harmless practice on securing AI agents.</description>
    <language>en</language>
    <atom:link href="https://mhl42.ai/blog/feed.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>What we added to TRACE for agentic AI</title>
      <link>https://mhl42.ai/blog/trace-for-agentic-ai</link>
      <guid>https://mhl42.ai/blog/trace-for-agentic-ai</guid>
      <pubDate>Tue, 01 Sep 2026 09:00:00 +0200</pubDate>
      <description>Version 0.1 of the agentic extension is public. It keeps every object, phase and gate of the original TRACE and adds an applicability screen, agentic model objects, six optional phases, and crosswalks to MITRE ATLAS and the NIST AI RMF.</description>
    </item>
    <item>
      <title>TRACE was built for people and AI working together</title>
      <link>https://mhl42.ai/blog/trace-and-human-ai-co-working</link>
      <guid>https://mhl42.ai/blog/trace-and-human-ai-co-working</guid>
      <pubDate>Tue, 25 Aug 2026 09:00:00 +0200</pubDate>
      <description>AI-human co-working was one of the three founding drivers of TRACE. That design decision is why the method holds up when the system being modelled is itself an AI agent.</description>
    </item>
    <item>
      <title>Reading Anthropic's zero trust guide for agents</title>
      <link>https://mhl42.ai/blog/zero-trust-for-agents</link>
      <guid>https://mhl42.ai/blog/zero-trust-for-agents</guid>
      <pubDate>Wed, 12 Aug 2026 09:00:00 +0200</pubDate>
      <description>Anthropic's May 2026 guide applies zero trust to agent deployments in three tiers and eight phases. What it gets right, where the tiers are off, and three things to add.</description>
    </item>
  </channel>
</rss>
