Keycard

72 posts

Keycard banner
Keycard

Keycard

@KeycardLabs

Keycard puts users, developers and companies in control of AI agents with real-time, adaptive permissions and complete transparency.

Katılım Aralık 2024
34 Takip Edilen5.2K Takipçiler
Sabitlenmiş Tweet
Keycard
Keycard@KeycardLabs·
Your coding agents inherit your credentials and your permissions. No identity system in the stack can tell the difference between you and the agent acting in your name. Today: Keycard for Coding Agents 🧵
Keycard tweet media
English
4
13
140
47.6K
Keycard
Keycard@KeycardLabs·
Early access is live. Install the CLI, authenticate, and see it working in your terminal. Full announcement ↓ keycard.ai/blog/announcin…
English
1
0
16
1.5K
Keycard
Keycard@KeycardLabs·
Routine actions run autonomously. Sensitive operations trigger real-time step-up approval. One command, keycard run, works across Claude Code, Codex, Cursor, ChatGPT, and OpenClaw. Same policy on laptops, sandboxes, and CI.
English
1
0
4
1.6K
Keycard
Keycard@KeycardLabs·
Your coding agents inherit your credentials and your permissions. No identity system in the stack can tell the difference between you and the agent acting in your name. Today: Keycard for Coding Agents 🧵
Keycard tweet media
English
4
13
140
47.6K
Keycard
Keycard@KeycardLabs·
RSAC is a week out. Booth #2351 at Moscone South Expo. Everyone on the floor will be talking about agent security this year. The difference is where you enforce it. We enforce it before the credential exists. Come see it. We're also raffling off prizes you'll actually want at the booth.
Keycard tweet media
English
0
1
11
465
Keycard
Keycard@KeycardLabs·
Our Head of DevRel built exactly this. A planning agent hitting 8 tools with 7 OAuth providers. One Keycard login. Ephemeral tokens per tool call. Full audit trail. Here's the full build: keycard.ai/blog/i-built-a…
English
0
0
0
201
Keycard
Keycard@KeycardLabs·
Your agent hits 7 APIs on behalf of a user. Are you building 7 separate OAuth implementations, or handing it one over-privileged token and hoping for the best? Keycard: one login, one JWT. Each tool call gets an ephemeral token scoped to the task. Used once, discarded. If policy says no, the credential never exists.
English
1
0
3
468
Keycard
Keycard@KeycardLabs·
@ankrgyl Us. Except the opposite. Keycard evaluates policy at credential issuance. If policy says no, the credential never exists. There's nothing to skip because nothing was issued.
English
0
0
1
21
Ankur Goyal
Ankur Goyal@ankrgyl·
who is building --safely-skip-permissions
English
19
1
34
7.9K
Keycard
Keycard@KeycardLabs·
@a16z Hard mode is where we live. Keycard evaluates policy when the credential is issued. The agent gets exactly what it needs for the task, scoped to the user who authorized it, and nothing more. Task done, access gone.
English
0
0
0
72
a16z
a16z@a16z·
Aaron Levie on why AI agents can't just be treated like normal user accounts: "I, as Aaron, don't really have any responsibility over anybody else's Box account in our organization. I can't see the Box account of any other employee that I work with. I'm not liable for anything that they do." "Agents don't have those properties. The person who creates the agent probably is going to, for the foreseeable future, take on a lot of the liability for what that agent does." "When you're in Claude Code or Cursor, the agent is you... It can do everything you can do." "That's the easy mode." "The hard mode is agents are running on their own and people check in with them occasionally." "How do you give them access to resources in the enterprise without dramatically increasing the security risk?" @levie on @latentspacepod
English
25
25
136
40.2K
Keycard
Keycard@KeycardLabs·
Kicking off RSA week early. We're co-hosting a reception with @Boldstartvc, Surf AI, and GainSecurity for security leaders and entrepreneurs. March 22. 1 Hotel, SF. 6 PM to 9 PM. Great conversations, food, and drinks before RSA officially begins. Registration required (approval-based) 👇
Keycard tweet media
English
1
1
9
660
Keycard
Keycard@KeycardLabs·
Agents are making decisions, accessing APIs, and acting autonomously. The identity models we have weren't built for this. Our CEO @ianlivingstone is joined by fellow panelists Karl McGuinness (ex-@okta), Amanda Robson (@mtf_vc), and a guest from @AnthropicAI to talk about what needs to change. March 25 in SF. Panel + happy hour 👇
Keycard tweet media
English
1
1
10
812
Keycard
Keycard@KeycardLabs·
Our Head of DevRel @KimMaida built a planning agent that reads many work tools and plans her day. It calls 7 OAuth providers with one login, scoped grants, zero standing access. Ephemeral tokens per tool call. Full audit trail. The full build 👇
English
2
0
11
1.3K