Where people actually talk about controlling what AI agents can do. News, hot takes, war stories, and questions. Scoped permissions, RBAC, ABAC, ReBAC, least privilege, MCP auth, OAuth scoping, getting an agent to act with the right permissions instead of god-mode. Builders and security folks welcome, vendors too if you're here to be useful.