Agent Permissions
Blast radius, least privilege per tool, the confused deputy, secrets the agent must never see, egress control and an audit trail you can read months later.
10 lessons · about 91 minutes
What you'll go through
- 01The agent runs with your permissions, not the user's9 min
- 02Writing down what it could reach on its worst day9 min
- 03One credential for everything is one credential to steal9 min
- 04It was asked nicely, and it had the rights9 min
- 05The key in the prompt is in the transcript9 min
- 06Approval that fires constantly approves everything9 min
- 07Where the code it writes should run9 min
- 08Data does not leak; it is sent somewhere9 min
- 09Reconstructing what it did, months later9 min
- 10Deciding what it may do before it asks10 min
Included in this pack
AI Security — Prompt injection, what an agent can reach when it is compromised, and where your data actually goes. Assumes the AI Agents pack. Three courses, 30 lessons.
Also in this pack

Prompt Injection
Why no parser separates instructions from data, where untrusted text enters, why delimiters are not a boundary, and how to design so a landed instruction cannot do damage.
10 lessons · ~91 min$19.90

Data Protection for AI Systems
What crosses the wire, what ends up in logs, retention and training terms, redaction, residency, and deleting a record that was already embedded into an index.
10 lessons · ~86 min$19.90