{"schema_version":"newruntime-topic-hub-v0.2","type":"topic_hub","stable_id":"topic_hub:ai-security","slug":"ai-security","title":"AI Security - New Runtime","description":"A New Runtime topic hub collecting signals, patterns, field notes, and public sources about ai security.","retrieval_nugget":"A New Runtime topic hub collecting signals, patterns, field notes, and public sources about ai security. AI Security is tracked here as an evidence-linked topic, not as a static glossary entry. The page connects raw observations to pattern hypotheses, longer analysis, and public sources. Use it as the canonical landing page before drilling into individual records.","answer":["AI Security is tracked here as an evidence-linked topic, not as a static glossary entry.","The page connects raw observations to pattern hypotheses, longer analysis, and public sources.","Use it as the canonical landing page before drilling into individual records."],"search_intents":["ai security","ai security AI agents","ai security software"],"status":"tracked","last_updated":"2026-07-29","record_date":"2026-07-29","date_kind":"last_updated","counts":{"total":8,"signals":3,"patterns":0,"posts":4,"atlas":1,"sources":14},"routes":{"html":"https://newruntime.com/topics/ai-security/","markdown":"https://newruntime.com/topics/ai-security.md","json":"https://newruntime.com/topics/ai-security.json"},"source_urls":["https://aws.amazon.com/about-aws/whats-new/2026/07/oauth-aws-mcp-server/","https://blog.cloudflare.com/temporary-accounts/","https://blogs.nvidia.com/blog/open-secure-ai-alliance/?nvid=nv-csfg-990052","https://github.com/dinosn/raptor-loop-hunt","https://huggingface.co/blog/security-incident-july-2026","https://learn.microsoft.com/en-us/entra/agent-id/agent-identities","https://learn.microsoft.com/en-us/entra/agent-id/authorization-agent-id","https://openai.com/index/hugging-face-model-evaluation-security-incident/","https://thezvi.substack.com/p/more-on-an-internal-openai-model","https://www.nccoe.nist.gov/sites/default/files/2026-02/accelerating-the-adoption-of-software-and-ai-agent-identity-and-authorization-concept-paper.pdf","https://www.propelauth.com/post/oauth-2-1-and-mcp-deep-dive","https://x.com/Cloudflare/status/2081679030252700133"],"top_sources":["https://aws.amazon.com/about-aws/whats-new/2026/07/oauth-aws-mcp-server/","https://blog.cloudflare.com/temporary-accounts/","https://blogs.nvidia.com/blog/open-secure-ai-alliance/?nvid=nv-csfg-990052","https://github.com/dinosn/raptor-loop-hunt","https://huggingface.co/blog/security-incident-july-2026","https://learn.microsoft.com/en-us/entra/agent-id/agent-identities","https://learn.microsoft.com/en-us/entra/agent-id/authorization-agent-id","https://openai.com/index/hugging-face-model-evaluation-security-incident/","https://thezvi.substack.com/p/more-on-an-internal-openai-model","https://www.nccoe.nist.gov/sites/default/files/2026-02/accelerating-the-adoption-of-software-and-ai-agent-identity-and-authorization-concept-paper.pdf","https://www.propelauth.com/post/oauth-2-1-and-mcp-deep-dive","https://x.com/Cloudflare/status/2081679030252700133"],"evidence_records":[{"kind":"Shift","stable_id":"tectonic_shift:delegated-agent-identity","slug":"delegated-agent-identity","title":"Borrowed human credentials -> delegated agent identity","date":"2026-07-29","record_date":"2026-07-29","date_kind":"last_verified_or_first_seen","source_count":5,"url":"https://newruntime.com/shifts/delegated-agent-identity/"},{"kind":"Raw Signal","stable_id":"signal:mcp-oauth-authorization-boundary","slug":"mcp-oauth-authorization-boundary","title":"MCP and OAuth Put Agent Authorization on the Critical Path","date":"2026-07-29","record_date":"2026-07-29","date_kind":"observed_at","source_count":1,"url":"https://newruntime.com/signals/mcp-oauth-authorization-boundary/"},{"kind":"Field Note","stable_id":"post:mcp-oauth-authorization-boundary","slug":"mcp-oauth-authorization-boundary","title":"MCP and OAuth Put Agent Authorization on the Critical Path","date":"2026-07-29","record_date":"2026-07-29","date_kind":"updated_or_published_at","source_count":1,"url":"https://newruntime.com/posts/mcp-oauth-authorization-boundary/"},{"kind":"Raw Signal","stable_id":"signal:raptor-loop-hunt-security-agent-loop","slug":"raptor-loop-hunt-security-agent-loop","title":"RAPTOR Loop Hunt Packages Security Hunting as an Agent Skill","date":"2026-07-29","record_date":"2026-07-29","date_kind":"observed_at","source_count":1,"url":"https://newruntime.com/signals/raptor-loop-hunt-security-agent-loop/"},{"kind":"Field Note","stable_id":"post:raptor-loop-hunt-security-agent-loop","slug":"raptor-loop-hunt-security-agent-loop","title":"RAPTOR Loop Hunt Packages Security Hunting as an Agent Skill","date":"2026-07-29","record_date":"2026-07-29","date_kind":"updated_or_published_at","source_count":1,"url":"https://newruntime.com/posts/raptor-loop-hunt-security-agent-loop/"},{"kind":"Raw Signal","stable_id":"signal:openai-hugging-face-incident-followup","slug":"openai-hugging-face-incident-followup","title":"The OpenAI Hugging Face Follow-Up Is Really About Control Boundaries","date":"2026-07-29","record_date":"2026-07-29","date_kind":"observed_at","source_count":1,"url":"https://newruntime.com/signals/openai-hugging-face-incident-followup/"},{"kind":"Field Note","stable_id":"post:openai-hugging-face-incident-followup","slug":"openai-hugging-face-incident-followup","title":"The OpenAI Hugging Face Follow-Up Is Really About Control Boundaries","date":"2026-07-29","record_date":"2026-07-29","date_kind":"updated_or_published_at","source_count":1,"url":"https://newruntime.com/posts/openai-hugging-face-incident-followup/"},{"kind":"Field Note","stable_id":"post:open-secure-ai-alliance-open-defense-stack","slug":"open-secure-ai-alliance-open-defense-stack","title":"Open Secure AI Alliance Turns the AI-Safety Fight Into a Stack Question","date":"2026-07-27","record_date":"2026-07-27","date_kind":"updated_or_published_at","source_count":6,"url":"https://newruntime.com/posts/open-secure-ai-alliance-open-defense-stack/"}],"patterns":[],"field_notes":[{"kind":"Field Note","stable_id":"post:mcp-oauth-authorization-boundary","slug":"mcp-oauth-authorization-boundary","title":"MCP and OAuth Put Agent Authorization on the Critical Path","description":"PropelAuth's MCP and OAuth 2.1 deep dive shows that agent protocols need explicit user, client, server, and scope boundaries.","date":"2026-07-29","record_date":"2026-07-29","date_kind":"updated_or_published_at","topics":["agent-protocols","ai-security"],"source_count":1,"url":"https://newruntime.com/posts/mcp-oauth-authorization-boundary/"},{"kind":"Field Note","stable_id":"post:raptor-loop-hunt-security-agent-loop","slug":"raptor-loop-hunt-security-agent-loop","title":"RAPTOR Loop Hunt Packages Security Hunting as an Agent Skill","description":"RAPTOR Loop Hunt shows security research moving toward looped agent skills with altitude changes, evidence collection, and review checkpoints.","date":"2026-07-29","record_date":"2026-07-29","date_kind":"updated_or_published_at","topics":["ai-security","coding-agents"],"source_count":1,"url":"https://newruntime.com/posts/raptor-loop-hunt-security-agent-loop/"},{"kind":"Field Note","stable_id":"post:openai-hugging-face-incident-followup","slug":"openai-hugging-face-incident-followup","title":"The OpenAI Hugging Face Follow-Up Is Really About Control Boundaries","description":"The Zvi follow-up on the OpenAI and Hugging Face incident keeps pointing back to evaluation boundaries, permissions, and agent control surfaces.","date":"2026-07-29","record_date":"2026-07-29","date_kind":"updated_or_published_at","topics":["ai-security","evals-benchmarks"],"source_count":1,"url":"https://newruntime.com/posts/openai-hugging-face-incident-followup/"},{"kind":"Field Note","stable_id":"post:open-secure-ai-alliance-open-defense-stack","slug":"open-secure-ai-alliance-open-defense-stack","title":"Open Secure AI Alliance Turns the AI-Safety Fight Into a Stack Question","description":"NVIDIA's Open Secure AI Alliance reframes open models, harnesses, identity, safe formats, scanners, and disclosure as shared defensive infrastructure for AI agents.","date":"2026-07-27","record_date":"2026-07-27","date_kind":"updated_or_published_at","topics":["agent-harness","ai-security","governance","open-models"],"source_count":6,"url":"https://newruntime.com/posts/open-secure-ai-alliance-open-defense-stack/"}],"raw_signals":[{"kind":"Raw Signal","stable_id":"signal:mcp-oauth-authorization-boundary","slug":"mcp-oauth-authorization-boundary","title":"MCP and OAuth Put Agent Authorization on the Critical Path","description":"PropelAuth's MCP and OAuth 2.1 deep dive shows that agent protocols need explicit user, client, server, and scope boundaries.","date":"2026-07-29","record_date":"2026-07-29","date_kind":"observed_at","topics":["agent-protocols","ai-security"],"source_count":1,"metric":"structural","url":"https://newruntime.com/signals/mcp-oauth-authorization-boundary/"},{"kind":"Raw Signal","stable_id":"signal:raptor-loop-hunt-security-agent-loop","slug":"raptor-loop-hunt-security-agent-loop","title":"RAPTOR Loop Hunt Packages Security Hunting as an Agent Skill","description":"RAPTOR Loop Hunt shows security research moving toward looped agent skills with altitude changes, evidence collection, and review checkpoints.","date":"2026-07-29","record_date":"2026-07-29","date_kind":"observed_at","topics":["ai-security","coding-agents"],"source_count":1,"metric":"notable","url":"https://newruntime.com/signals/raptor-loop-hunt-security-agent-loop/"},{"kind":"Raw Signal","stable_id":"signal:openai-hugging-face-incident-followup","slug":"openai-hugging-face-incident-followup","title":"The OpenAI Hugging Face Follow-Up Is Really About Control Boundaries","description":"The Zvi follow-up on the OpenAI and Hugging Face incident keeps pointing back to evaluation boundaries, permissions, and agent control surfaces.","date":"2026-07-29","record_date":"2026-07-29","date_kind":"observed_at","topics":["ai-security","evals-benchmarks"],"source_count":1,"metric":"notable","url":"https://newruntime.com/signals/openai-hugging-face-incident-followup/"}],"atlas_records":[{"kind":"Shift","stable_id":"tectonic_shift:delegated-agent-identity","slug":"delegated-agent-identity","title":"Borrowed human credentials -> delegated agent identity","description":"Autonomous agents are moving from borrowed user sessions and shared keys toward distinct identities with scoped authority, sponsors, expiry, and audit.","date":"2026-07-29","record_date":"2026-07-29","date_kind":"last_verified_or_first_seen","topics":["access-control","agent-identity","ai-security","enterprise-agents"],"source_count":5,"metric":"emerging","url":"https://newruntime.com/shifts/delegated-agent-identity/"}],"next_reads":[{"type":"related_material","path":"/posts/mcp-oauth-authorization-boundary/","reason":"Continue through the AI Security topic.","url":"https://newruntime.com/posts/mcp-oauth-authorization-boundary/","title":"MCP and OAuth Put Agent Authorization on the Critical Path","media_type":"text/html"},{"type":"related_material","path":"/posts/raptor-loop-hunt-security-agent-loop/","reason":"Continue through the AI Security topic.","url":"https://newruntime.com/posts/raptor-loop-hunt-security-agent-loop/","title":"RAPTOR Loop Hunt Packages Security Hunting as an Agent Skill","media_type":"text/html"},{"type":"related_material","path":"/posts/openai-hugging-face-incident-followup/","reason":"Continue through the AI Security topic.","url":"https://newruntime.com/posts/openai-hugging-face-incident-followup/","title":"The OpenAI Hugging Face Follow-Up Is Really About Control Boundaries","media_type":"text/html"},{"type":"related_material","path":"/posts/open-secure-ai-alliance-open-defense-stack/","reason":"Continue through the AI Security topic.","url":"https://newruntime.com/posts/open-secure-ai-alliance-open-defense-stack/","title":"Open Secure AI Alliance Turns the AI-Safety Fight Into a Stack Question","media_type":"text/html"},{"type":"related_material","path":"/signals/mcp-oauth-authorization-boundary/","reason":"Continue through the AI Security topic.","url":"https://newruntime.com/signals/mcp-oauth-authorization-boundary/","title":"MCP and OAuth Put Agent Authorization on the Critical Path","media_type":"text/html"}]}
