The agent-native software factory
Guides on building, governing, and scaling an agent-native software factory, plus write-ups of the podcasts and talks behind the ideas.
Guides on building, governing, and scaling an agent-native software factory, plus write-ups of the podcasts and talks behind the ideas.
Within Security & Governance
Factory Private
Agent Governance

AI agent controls for private networks need enforceable permissions, sandboxing, managed model policy, and review gates. Build a testable policy for Droid.
Read articleAI Coding Agents
Governance

A coding agent audit trail connects identity, intent, tool activity, validation, review, and deployment. Learn what evidence to retain without collecting unnecessary data.
Read articleEnterprise AI
Security

Least-privilege access for coding agents limits files, commands, networks, and credentials to what each task needs. Use this review checklist before granting autonomy.
Read articleFactory Private
Security Remediation

Private AI security remediation should connect a validated finding to a bounded fix, regression tests, and approval. Keep evidence and execution inside the approved boundary.
Read articleFactory Private
Compliance

SOC 2 for AI coding tools requires a review of report scope, operating period, data flows, and customer controls. Evaluate evidence instead of relying on a badge.
Read articleStart building