Back Issues/Search Home → Calendar → Archive → Current Issue → Popular →

All issuesVolume 342, Issue 1IT NewsAI

The Agent Didn't Leak Anything. It Just Figured Something Out

CIO, Wednesday, September 2nd, 2026

Agent permissions can't stop dangerous inferences synthesized from separately authorized data sources.

This piece identifies a governance blind spot: an AI agent can access several data sources entirely within its permissions yet synthesize a sensitive conclusion none of those permissions was designed to protect - for example inferring an unannounced deal from calendar patterns.

Traditional access controls fail here because they cannot classify an output based on inputs that never contained the sensitive fact.

Data labeling does not solve it either. The recommended approach binds agent authority to a declared purpose and assigns named human responsibility for cross-domain access combinations, treating multi-source permission grants as explicit governance decisions rather than routine provisioning.

more →  ·  More from AI →