The thing that makes an agent useful is the exact thing that makes it dangerous. Keycard co-founder Ian Livingstone breaks down why non-determinism is both the feature and the bug, and why identity, not model quality, is what really gates how much autonomy you can hand an agent. If you have ever clicked "always allow" without reading it, this one is about you.
What we cover: – Why authentication was enough in the cloud era and stops being enough with agents – The background check you can't run on an agent, and what has to replace it – Mission identity: who is acting, on whose behalf, and for what purpose – Cross App Access, Agent Auth and the protocols trying to fix OAuth – Consent fatigue, LLM as a judge, and where hard boundaries still belong – Why MCP ships with an auth story and CLI tools don't
Chapters: 00:00:00 - Introduction 00:03:43 - Why every wave of computing rewrites identity 00:04:50 - The feature and the bug are the same thing 00:10:23 - Why shared secrets break for agents 00:13:36 - The background check you can't run on an agent 00:19:42 - Chargebacks, delegation and proving intent 00:22:16 - Mission identity: a new layer 00:28:07 - Cross App Access, Agent Auth and emerging protocols 00:33:02 - MCP vs CLI, and how Keycard works 00:43:22 - Identity three years from now
🌐 Tessl: https://tessl.io 🔔 Subscribe for weekly episodes on AI-native development
Where do you draw the hard line for your own agents? Tell us in the comments.
Podden och tillhörande omslagsbild på den här sidan tillhör
Tessl. Innehållet i podden är skapat av Tessl och inte av,
eller tillsammans med, Poddtoppen.