Spellguard and AGNTCY
July 24, 2026
Security
Spellguard and AGNTCY

When Spellguard launched, most of the agent security market was looking inward. Vendors were shipping policy engines, observability layers, and compliance tooling designed to govern agents inside a single organization. The Spellguard team focused on a different question: what happens when an agent's job takes it outside the organization?

Spellguard
2 Min

Latest

Date Unknown
EngineeringGuide
Agent Tool Security

An agent that can read a file AND send an email has all the capabilities needed for data exfiltration — even if neither capability is dangerous alone. Here's how to secure every tool your agent touches.

Spellguard
9 Min
April 16, 2026
Guide
Content Governance & Compliance

California's AI guardrail laws are now in effect. The EU AI Act high-risk provisions land in August 2026. Your agent's compliance posture isn't about what it was trained to do — it's about what it's enforced to do at runtime. Here's how to build content governance that survives an audit.

Spellguard
8 Min
April 16, 2026
Guide
Network & URL Safety

36% of MCP servers are vulnerable to SSRF. SSRF attacks surged 452% in a single year. Your AI agent has network access — here's how to stop it from becoming a proxy for attackers targeting your internal infrastructure.

Spellguard
8 Min
April 16, 2026
Guide
Privilege Escalation & Access Control

Your AI agent has database access, API credentials, and tool permissions. An attacker doesn't need to steal those credentials — they just need to convince the agent to use them. Here's how to enforce access control at the policy layer when traditional IAM falls short.

Spellguard
8 Min
April 16, 2026
GuideSecurity
Toxic & Harmful Content Filtering

our AI agent can generate hate speech, explicit content, and harmful instructions — even if the underlying model has safety training. Here's why model-level alignment isn't enough and how to enforce content safety at the policy layer.

Spellguard
8 Min
April 16, 2026
Guide
PII, PHI & Secrets Leakage

Your AI agent doesn't know the difference between a helpful answer and a compliance violation. Social Security numbers, medical record numbers, API keys — if it's in the context, it's in the response. Here's how to stop it.

Spellguard
8 Min
April 16, 2026
GuideSecurity
Prompt Injection Detection

Prompt injection is the #1 vulnerability in autonomous AI systems — and the hardest to catch. Here's what security leaders need to know about building layered defenses that actually work.

Spellguard
6 Min
April 15, 2026
EngineeringGuide
Agent Reliability & Operational

The AI agent security conversation focuses on adversarial threats — prompt injection, data exfiltration, privilege escalation. But for most organizations operating agents in production, the day-to-day risk isn't an attacker. It's an agent that silently enters an infinite loop, burns through your API budget at 3 AM, or sends malformed data to a downstream system that expected valid JSON.

Spellguard
9 Min

Secure, auditable
agent-to-agent communication.

Ask AI about Spellguard: