當 AI Agent 從回答問題走向呼叫 Tool、MCP 與 API 執行任務,企業該如何確認它是誰、代表誰,又憑什麼採取行動?本系列將用 30 天拆解 Agent Identity、Delegation 與 Authorization,從工作負載身分、使用者委派、逐次授權與 Human Approval,一路談到撤銷、稽核及可驗證證據。內容採 vendor-neutral、architecture-first 的方式,搭配本機可重現的 PoC,建立一套企業可落地的 Agent 權力治理架構。
Core Question 哪些 Action 應使用 Agent 自身 authority,哪些必須以使用者 delegation 執行? 今天的問題:同一個...
Core Question 一句自然語言同意如何轉成對收件者、內容、次數與期限都有邊界的可執行 authority? 今天的問題:同意不是萬用 send_ema...
Core Question User 的 read permission 經 Agent 使用後,是否因自動化、規模、推論或外洩路徑而需要收窄? 今天的問題:U...
Core Question Agent A 轉委派給 B 時,如何保留原始 User、限制 authority 並防止 privilege amplificat...
Core Question 企業如何決定哪些 Agent、Tool、Action 或 trust domain 不得再接受或延伸 delegation? 今天的...
Core Question Tool discovery、Tool availability 與執行某次 Action 的 authorization 為何必須...
Core Question MCP Server 如何避免把連線或 tool listing 的成功誤當成全部 Tool 的授權? 今天的問題 一個客服 Age...
Core Question 面對動態 Agent execution,RBAC、ABAC 與 task-bound policy 應如何組合? 今天的問題 客服...
Core Question Policy 如何辨識 Tool Call 的 side effect、可逆性、資料範圍與 impact,而不只看 Tool 名稱?...
Core Question 哪些條件應觸發 Human Approval,且 approval 如何與即將執行的 Action 綁定? 今天的問題 Agent...