Runtime-Derived Least Privilege for AI Agents: From Observed Behavior to Enforcement
A platform team finishes a two-week observation window on a new internal research agent. The baseline is stable; the sensor produced a clean profile. By Friday, no policy has shipped — and the blocker isn’t tooling.