<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0">
  <channel>
    <title>Aten Security Blog</title>
    <link>https://atensecurity.com/blog</link>
    <description>Research, analysis, and engineering posts from Aten Security.</description>
    <language>en-us</language>
    <lastBuildDate>Thu, 25 Jun 2026 18:09:36 GMT</lastBuildDate>
    <atom:link href="https://atensecurity.com/rss.xml" rel="self" type="application/rss+xml" xmlns:atom="http://www.w3.org/2005/Atom" />

  <item>
    <title>The AI Agent Instrumentation Tax: Lessons from 1,000 Hours of Runtime Telemetry Staging</title>
    <link>https://atensecurity.com/blog/the-ai-agent-instrumentation-tax</link>
    <guid isPermaLink="true">https://atensecurity.com/blog/the-ai-agent-instrumentation-tax</guid>
    <pubDate>Mon, 08 Jun 2026 15:11:00 GMT</pubDate>
    <description>What happens when you stage autonomous AI agents in production pipelines? A raw, 14-day engineering post-mortem breaking down runtime telemetry mapping, active policy simulation, and the reality of the developer &apos;instrumentation tax&apos;.</description>
  </item>
  <item>
    <title>Before You Enforce, Simulate: Thoth&apos;s Observe Mode and the Day-7 Report</title>
    <link>https://atensecurity.com/blog/thoth-policy-simulation-observe-enforce-day7</link>
    <guid isPermaLink="true">https://atensecurity.com/blog/thoth-policy-simulation-observe-enforce-day7</guid>
    <pubDate>Mon, 01 Jun 2026 16:50:00 GMT</pubDate>
    <description>The question every security team asks before turning on enforcement: &quot;What would this actually block?&quot; Thoth&apos;s observe mode gives you a precise answer running your policies against real production traffic, recording what would have been blocked, without blocking anything.</description>
  </item>
  <item>
    <title>Unified Decision Logic: Introducing MODIFY and DEFER in Thoth SDK 0.1.16</title>
    <link>https://atensecurity.com/blog/unified-decision-logic-introducing-modify-and-defer-in-thoth-sdk-0-1-16</link>
    <guid isPermaLink="true">https://atensecurity.com/blog/unified-decision-logic-introducing-modify-and-defer-in-thoth-sdk-0-1-16</guid>
    <pubDate>Fri, 15 May 2026 15:30:00 GMT</pubDate>
    <description>The 0.1.16 release line ships MODIFY and DEFER decision types, canonicalizes observe mode, and surfaces the full ML decision envelope including feature vectors and score components in all three SDK languages.</description>
  </item>
  <item>
    <title>From Guardrails to Control Plane: The Next Phase of AI Agent Governance</title>
    <link>https://atensecurity.com/blog/from-guardrails-to-control-plane</link>
    <guid isPermaLink="true">https://atensecurity.com/blog/from-guardrails-to-control-plane</guid>
    <pubDate>Wed, 06 May 2026 14:38:58 GMT</pubDate>
    <description>Enterprise teams do not need another AI security console. They need a control plane that governs actions at runtime, plugs into existing systems, and produces evidence that holds up during incidents and audits.</description>
  </item>
  <item>
    <title>The Missing Layer in Agent Security: Evidence, Not Just Decisions</title>
    <link>https://atensecurity.com/blog/missing-layer-agent-security-evidence</link>
    <guid isPermaLink="true">https://atensecurity.com/blog/missing-layer-agent-security-evidence</guid>
    <pubDate>Thu, 16 Apr 2026 15:00:00 GMT</pubDate>
    <description>ALLOW/BLOCK is not enough for production AI agents. Here is why evidence-first security matters: capture every action, retain rejected events, enable step-up workflows, and build audit-ready trails without slowing engineering teams.</description>
  </item>
  <item>
    <title>Governing AI Agents After You’ve Said Yes</title>
    <link>https://atensecurity.com/blog/governing-ai-agents-after-youve-said-yes</link>
    <guid isPermaLink="true">https://atensecurity.com/blog/governing-ai-agents-after-youve-said-yes</guid>
    <pubDate>Wed, 01 Apr 2026 00:00:00 GMT</pubDate>
    <description>The hardest problem in AI security isn’t stopping agents from doing bad things before you’ve authorized them. It’s stopping them from doing bad things after you have. Introducing Thoth v0.1.1 — runtime governance for AI agent tool calls.</description>
  </item>
  <item>
    <title>The Action Didn’t Execute. That’s the Product</title>
    <link>https://atensecurity.com/blog/the-action-didnt-execute-thats-the-product</link>
    <guid isPermaLink="true">https://atensecurity.com/blog/the-action-didnt-execute-thats-the-product</guid>
    <pubDate>Sun, 22 Mar 2026 00:00:00 GMT</pubDate>
    <description>An AI agent deleted 1,206 executives from a live CRM database during an active code freeze. Okta was running. LangSmith was running. Nothing stopped the DROP TABLE. That’s the problem Thoth solves.</description>
  </item>
  <item>
    <title>Raising the Bar for Secure Communications: Aten Security’s Philosophy on Trust and Compliance</title>
    <link>https://atensecurity.com/blog/raising-the-bar-for-secure-communications-aten-securitys-philosophy-on-trust-and-compliance</link>
    <guid isPermaLink="true">https://atensecurity.com/blog/raising-the-bar-for-secure-communications-aten-securitys-philosophy-on-trust-and-compliance</guid>
    <pubDate>Fri, 20 Mar 2026 00:00:00 GMT</pubDate>
    <description>SOC 2 Type II certified, CISA-recognized, and pursuing ISO 42001 — why Aten Security treats compliance as something you prove, not something you say.</description>
  </item>
  <item>
    <title>Why We Built Aten Security: A Founder’s Story</title>
    <link>https://atensecurity.com/blog/why-we-built-aten-securitytm-a-founders-story</link>
    <guid isPermaLink="true">https://atensecurity.com/blog/why-we-built-aten-securitytm-a-founders-story</guid>
    <pubDate>Fri, 20 Mar 2026 00:00:00 GMT</pubDate>
    <description>The moment everything changed wasn’t in a boardroom. It was November 2022, watching FTX collapse. Here’s why Nyah Check built Aten Security to close the trillion-dollar blind spot in enterprise communications.</description>
  </item>
  </channel>
</rss>