Patterns for building secure products and scalable security platforms
Stay up to date with our latest posts.
How to keep A2A discovery from becoming an authorization decision
May 27, 2026
How to turn an email invite into tenant membership without treating the link as auth
May 13, 2026
Tool descriptions are part of the prompt. If that text changes after approval, the tool should stop working until it is reviewed again
Apr 29, 2026
Single-Use Tokens, Response Parity, and Session Hygiene
Apr 22, 2026
A secure pattern for storing, refreshing, and using customer OAuth credentials
Apr 15, 2026