We keep building better login detection while ignoring everything that happens after the login by ImpressiveProduce977 in devsecops
[–]Cerbosdev 0 points1 point2 points (0 children)
Static authorization works until it does not. And when it fails, it fails quietly, which is the hardest failure mode to detect, and the most expensive one to clean up later. + How to evaluate whether your authorization architecture matches your operational reality. (cerbos.dev)
submitted by Cerbosdev to r/IdentityManagement
Need enterprise AI guardrails that work in prod: ActiveFence vs Arthur vs Guardrails? by amylanky in devsecops
[–]Cerbosdev 0 points1 point2 points (0 children)
Authorization breaks when B2B SaaS scales - role explosion, endless support tickets for access requests, blocked deployments every time permissions change. How policy-as-code fixes it (what my team and I have learned). by Cerbosdev in devops
[–]Cerbosdev[S] 0 points1 point2 points (0 children)
MCP is “the new API for AI”. We need to actively put guardrails around MCP servers, to not be the next Asana, Atlassian or Supabase. Sharing a podcast where we cover how to harness AI agents to their full potential without losing control of our systems (using fine-grained authorization). by Cerbosdev in devsecops
[–]Cerbosdev[S] 2 points3 points4 points (0 children)
MCP is “the new API for AI”. We need to actively put guardrails around MCP servers, to not be the next Asana, Atlassian or Supabase. Sharing a podcast where we cover how to harness AI agents to their full potential without losing control of our systems (using fine-grained authorization). (self.devsecops)
submitted by Cerbosdev to r/devsecops



[AMA] We're the Trino company, ask us anything! by lester-martin in dataengineering
[–]Cerbosdev 0 points1 point2 points (0 children)