Secure your agents before they act.
An agent with broad access and a hostile prompt is a breach waiting to happen. TapPass sits in front of every action — least privilege, redaction, human approval and a full record — so eager agents stay safe.
Four principles, held on every call.
Least privilege
Every agent gets the three tools its job needs, not the thirty-four the server exposes. Access is granted, never assumed.
Progressive authority
Agents start watch-only. Authority is earned from clean, observed behaviour — widened step by step, never handed over on day one.
Human in the loop
The calls that move money, data or the physical world stop for a person — in Slack or email, in seconds, before anything runs.
Tamper-proof audit trail
Every decision is sealed into a hash-chained, signed record — post-quantum ready — so any change or gap is detectable. Evidence you can hand an auditor.
Keep reading
AI Agent Security Is Not LLM Security
Agents call tools, chain actions, and make decisions.
Prompt Injection Is Not an AI Problem. It's an Agent Problem.
Most content about prompt injection focuses on making the model say bad things.
Zero Trust for AI Agents: What Least Privilege Actually Means
Least privilege for humans is well understood.