Blog — Updates

Field notes.

Secure AI pipelines, agentic systems, and HIPAA-ready engineering — what we're building and what we're learning.

Attacker Agents are Here

Part 1: The First Autonomous Attacker series opener walks the incident link by link — and argues the threat-model question has permanently changed. Not what did we point the agent at. What could it reach, and what could it conclude.

Read on Medium →

War Stories & the Reference Pattern

Part 3 closes our "Securing AI on PHI" series with the stories version control actually recorded: one silent failure that cost a month, two loud ones that cost afternoons — and the design posture that difference buys: fail loud.

Read on Medium →