Off-host auth for AI agents: per-message HMACs, nonce/timestamp binding, and a policy engine the model can't tamper with.
trending2
01 02 From Tool Connection to Execution Control: Benchmarking Security Invariants in MCP-Style Agent Runtimes arxiv.orgEight security invariants, because MCP tool connections apparently weren’t enough, and the paper benchmarks HCP against baselines.