GitHub's security model assumes human users, not prompt-injectable agents. Three design issues, a GraphQL exfiltration vector found by a Claude pentest, and the layered defenses needed to close them.
Airut now supports scheduled tasks -- two modes for running Claude Code on a schedule, enabling automated CI fixes, daily briefings, and pipeline refinement.
Why agentic AI security can't be solved deterministically, how the industry's current approaches fall short, and two criteria for evaluating practical security.
How we extended our diagnostics tool from a single-pass analysis pipeline into an agentic workflow where customer support iterates with an AI agent over email to resolve issues.