{"podcast":{"title":"Practical AI","slug":"practical-ai","podcast_index_feed_id":444526,"rss_url":"https://feeds.transistor.fm/practical-ai-machine-learning-data-science-llm","website_url":"https://practicalai.show/","image_url":"https://img.transistorcdn.com/WMlp2ug34XB6LDJ3-vnzti_-_y144LUlFW0Xzzn3fss/rs:fill:0:0:1/w:1400/h:1400/q:60/mb:500000/aHR0cHM6Ly9pbWct/dXBsb2FkLXByb2R1/Y3Rpb24udHJhbnNp/c3Rvci5mbS8wMTZi/ZWJmNWIwNDdmYTcw/NGJjMTExZjNjZmYy/M2ZjNS5wbmc.jpg","author":"Daniel Whitenack and Chris Benson","episode_count":368,"summary":"Making artificial intelligence practical, productive & accessible to everyone. Practical AI is a show in which technology professionals, business people, students, enthusiasts, and expert guests engage in lively discussions about Artificial Intelligence and related topics (Machine Learning, Deep Learning, Neural Networks, GANs, MLOps, AIOps, LLMs & more). The focus is on productive implementations and real-world scenarios that are accessible to everyone. If you want to keep up with the latest advances in AI, while keeping one foot in the real world, then this is the show for you!","last_synced_at":"2026-08-02T15:06:44.156849+00:00","page_url":"https://stenobird.com/podcast/practical-ai"},"episode":{"title":"Zero Trust for AI Agents","slug":"zero-trust-for-ai-agents","published_at":"2026-06-11T09:00:00+00:00","page_url":"https://stenobird.com/podcast/practical-ai/zero-trust-for-ai-agents","show_page_url":"https://stenobird.com/podcast/practical-ai","url":"https://share.transistor.fm/s/5c1a087d","audio_url":"https://pscrb.fm/rss/p/dts.podtrac.com/redirect.mp3/media.transistor.fm/5c1a087d/89d77a53.mp3","summary":"As autonomous AI agents gain the ability to execute code and access enterprise tools, traditional security perimeters are becoming obsolete. This episode analyzes Anthropic's Zero Trust framework to provide a blueprint for securing agentic workflows against unprecedented risks.","meta_description":"Learn how to apply Zero Trust principles to AI agents to prevent prompt injection, supply chain attacks, and unauthorized lateral movement in autonomous s…","key_points":["Main idea: Implementing a Zero Trust architecture for agents requires moving from static permissions to granular, identity-based authentication for every action","Failure mode: Unrestricted agent agency can lead to 'agent spawning,' where a primary agent creates secondary agents with unintended, elevated privileges","Practical takeaway: Organizations should adopt 'least agency' principles, limiting the blast radius of an agent's ability to interact with external APIs and tools","Risk factor: The dynamic nature of agents composing tools and installing packages at runtime creates a real-time, shifting supply chain vulnerability","Strategic shift: To mitigate dependency risks, developers may need to move toward 'AI vendoring,' where agents generate proprietary, controlled versions of code rather than pulling third-party libraries"],"chapters":[{"start_ms":60000,"title":"The Anthropic Framework","summary":"An introduction to Anthropic's recent white paper on implementing Zero Trust for autonomous AI agents in enterprise environments."},{"start_ms":480000,"title":"Defining Zero Trust for Agents","summary":"Exploring the necessity of a framework that assumes no inherent trust, focusing on authentication and authorization at a granular level."},{"start_ms":900000,"title":"Least Agency and Blast Radius","summary":"Discussing the concept of 'least agency' to prevent agents from accessing unauthorized routes or expanding their operational scope."},{"start_ms":1080000,"title":"Primary Threat Vectors","summary":"Breaking down critical vulnerabilities including prompt injection, instruction manipulation, and unauthorized API routing."},{"start_ms":1320000,"title":"Runtime Risks and Agent Spawning","summary":"Analyzing the dangers of agents creating new sub-agents and the difficulty of managing permissions in dynamic, non-static environments."},{"start_ms":1500000,"title":"The Shifting AI Supply Chain","summary":"Examining how real-time tool loading and package installation introduce new, unpredictable vulnerabilities into the software supply chain."},{"start_ms":1920000,"title":"Identity and Hardware Foundations","summary":"Discussing the importance of binding agent identity to verifiable hardware and secure API key management."}],"topics":["Zero Trust","AI Agents","Cybersecurity","Anthropic","Prompt Injection","Autonomous Systems","Supply Chain Security","Agentic Workflows"],"duration_seconds":2822,"processing_state":"processed","actions":[{"name":"request_transcript","method":"POST","url":"https://stenobird.com/v1/public/podcasts/practical-ai/episodes/zero-trust-for-ai-agents/transcription-requests","description":"Idempotently request low-priority transcript generation for this episode."},{"name":"read_markdown","method":"GET","url":"https://stenobird.com/podcast/practical-ai/zero-trust-for-ai-agents.md","description":"Read the agent-friendly Markdown representation of this episode resource."}]}}