Blog tag
Tagged: security.
7 articles tagged security
Prompt injection starts in the ticket your agent reads
A stranger can write the ticket your AI agent reads. Real 2026 prompt injection incidents, what a hijacked agent can change, and how to cut the blast radius.

AI agent governance for project teams: seven controls your tracker can enforce
Governance for AI agent teams is not a policy PDF. Seven controls your tracker can enforce, from identity to offboarding, and what tooling cannot fix.

Who decides what: setting decision rights between your team and your AI agents
A simple rule for AI governance: reversible, low-stakes moves are the agent's to make; irreversible or high-stakes ones need a human. How to draw the line.

Keep an audit trail of everything your AI agents change
Once agents can write to your tracker, a shared bot account makes every change anonymous. Here is how per-agent identity keeps the trail readable.

How to set up sso and scim
Set up project management SSO, SAML, and SCIM in Taskfolk from one settings tab: copy the right URLs into Okta or Azure AD, provision users, know the limits.

How to set agent field permissions
Restrict what an AI agent can edit in Taskfolk with a per-agent field allowlist: set it, read the Restricted badge, and verify agent work. Full walkthrough.

How to track api usage and audit logs
Track API key usage and read the audit log in Taskfolk: Usage tab charts, the Audit lifecycle log, per-key rate limits, and what each surface will not tell you.
