<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Agentic AI Archives - Modular Technology Group</title>
	<atom:link href="https://modtechgroup.com/category/agentic-ai/feed/" rel="self" type="application/rss+xml" />
	<link>https://modtechgroup.com/category/agentic-ai/</link>
	<description></description>
	<lastBuildDate>Wed, 26 Aug 2026 16:43:23 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.1</generator>
	<item>
		<title>DBS gave 1,500 employees AI agents. The interesting part is what had to exist first</title>
		<link>https://modtechgroup.com/dbs-gave-1-500-employees-ai-agents-the-interesting-part-is-w/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=dbs-gave-1-500-employees-ai-agents-the-interesting-part-is-w</link>
		
		<dc:creator><![CDATA[Arthur]]></dc:creator>
		<pubDate>Sun, 23 Aug 2026 14:00:48 +0000</pubDate>
				<category><![CDATA[Agentic AI]]></category>
		<guid isPermaLink="false">https://modtechgroup.com/dbs-gave-1-500-employees-ai-agents-the-interesting-part-is-w/</guid>

					<description><![CDATA[<p>Singapore's DBS is rolling out specialist AI agents to 1,500 employees, per Finextra's report from August 21. Not a chatbot in the corner of the intranet. Agents. Software that takes an objective, works through steps, touches systems, and hands back a result. The headline number is 1,500 people. That's not the story. The story is  [Read more...]</p>
<p>The post <a href="https://modtechgroup.com/dbs-gave-1-500-employees-ai-agents-the-interesting-part-is-w/">DBS gave 1,500 employees AI agents. The interesting part is what had to exist first</a> appeared first on <a href="https://modtechgroup.com">Modular Technology Group</a>.</p>
]]></description>
										<content:encoded><![CDATA[<div class="fusion-fullwidth fullwidth-box fusion-builder-row-1 fusion-flex-container nonhundred-percent-fullwidth non-hundred-percent-height-scrolling" style="--awb-border-radius-top-left:0px;--awb-border-radius-top-right:0px;--awb-border-radius-bottom-right:0px;--awb-border-radius-bottom-left:0px;--awb-flex-wrap:wrap;" ><div class="fusion-builder-row fusion-row fusion-flex-align-items-flex-start fusion-flex-content-wrap" style="max-width:1310.4px;margin-left: calc(-4% / 2 );margin-right: calc(-4% / 2 );"><div class="fusion-layout-column fusion_builder_column fusion-builder-column-0 fusion_builder_column_1_1 1_1 fusion-flex-column" style="--awb-bg-size:cover;--awb-width-large:100%;--awb-margin-top-large:0px;--awb-spacing-right-large:1.92%;--awb-margin-bottom-large:0px;--awb-spacing-left-large:1.92%;--awb-width-medium:100%;--awb-spacing-right-medium:1.92%;--awb-spacing-left-medium:1.92%;--awb-width-small:100%;--awb-spacing-right-small:1.92%;--awb-spacing-left-small:1.92%;"><div class="fusion-column-wrapper fusion-flex-justify-content-flex-start fusion-content-layout-column"><div class="fusion-text fusion-text-1"><p>Singapore&#8217;s DBS is rolling out specialist AI agents to 1,500 employees, per <a href="https://www.finextra.com/newsarticle/48281/singapores-dbs-deploys-specialist-ai-agents-for-1500-employees?utm_medium=rssfinextra&amp;utm_source=finextrafeed">Finextra&#8217;s report from August 21</a>. Not a chatbot in the corner of the intranet. Agents. Software that takes an objective, works through steps, touches systems, and hands back a result.</p>
<p>The headline number is 1,500 people. That&#8217;s not the story. The story is that a bank did this. A bank regulated by the Monetary Authority of Singapore, one of the strictest financial supervisors on the planet, decided it was comfortable letting autonomous software act on behalf of its staff at scale.</p>
<p>Banks do not get comfortable by accident. Somewhere behind that announcement is a mountain of unglamorous work: permission scoping, data boundaries, audit trails, escalation paths, and a clear answer to the question &#8220;who is accountable when the agent gets it wrong?&#8221; DBS has been building its internal AI machinery for the better part of a decade. The agents are the visible tip. The governance is the iceberg.</p>
<h2>Specialist beats general, and that&#8217;s a governance choice</h2>
<p>Notice the word Finextra used: specialist. Not one giant do-everything assistant. Narrow agents with defined jobs.</p>
<p>That&#8217;s not a product limitation. It&#8217;s a control decision, and it&#8217;s the right one. A specialist agent has a scope you can write down. You can enumerate the systems it touches, the data it reads, the actions it&#8217;s allowed to take, and the point at which it must stop and ask a human. You can log every step against that scope and review the logs. Try doing any of that with a general agent that has broad access &#8220;to be helpful.&#8221; You can&#8217;t, and neither can your compliance team, and neither can your regulator.</p>
<p>The specialist model is how you make agents auditable. DBS understood that. Most firms rushing into agent pilots right now do not.</p>
<h2>How the pilot usually goes at everyone else</h2>
<p>Here&#8217;s the pattern we keep seeing in mid-market firms, especially regulated ones. Somebody in operations wires up an agent using a SaaS platform&#8217;s shiny new agent builder. It works. It&#8217;s genuinely useful. Word spreads. Three months later there are eleven agents nobody centrally tracks, four of them have credentials to systems holding client data, and one of them has been quietly emailing summaries of internal documents through a third-party API in another jurisdiction.</p>
<p>Then someone asks the questions that should have come first. What data can these agents see? Where do their logs live? Who approved their permissions? Can we prove to an examiner what any of them did on a given Tuesday in March?</p>
<p>Bolting oversight onto that mess after the fact is miserable work. You&#8217;re reverse-engineering scope from behavior, revoking access people now depend on, and rebuilding trust with a compliance team that just found out about the whole thing. Baked in beats bolted on every single time, and the cost difference is not close.</p>
<h2>What baked-in actually looks like</h2>
<p>This is the design philosophy behind AgentWorks, Modular&#8217;s agent framework for regulated firms, and honestly it&#8217;s less about clever AI and more about boring, deliberate plumbing.</p>
<p>Every agent gets a written charter before it runs: job, systems, data classes, action limits. If it&#8217;s not in the charter, the agent can&#8217;t do it. Permissions are scoped and enforced at the infrastructure layer, not politely requested in a prompt, so an agent that shouldn&#8217;t see client PII physically cannot query it. Every action lands in an immutable log tied to the agent, the task, and the human who owns that agent. When an examiner asks what happened, you pull the record instead of pulling an all-nighter.</p>
<p>High-consequence actions route through human approval gates. The agent drafts, a person authorizes. Low-stakes steps run autonomously, and anything with real consequences waits for a human signature. And the whole thing runs on infrastructure the client controls, on US soil, at a fixed price. No metered surprise when an agent gets busy, and no wondering which country your audit trail lives in.</p>
<p>And because Modular is model-agnostic, the agent that fits the job gets the model that fits the job. Swap it later if something better ships. The governance layer doesn&#8217;t care which model is underneath, which is exactly how it should be.</p>
<p>Your data, your rules. And that includes the AI working on it: your AI, your rules. An agent is just software acting with your authority, so the rules that govern your data have to govern the agent too. Same jurisdiction, same access controls, same audit standard. If your agent platform can&#8217;t inherit those rules, you don&#8217;t have a governance problem waiting to happen. You already have one. You just haven&#8217;t logged it yet, because nothing is logging it.</p>
<h2>DBS earned this. You can too, faster</h2>
<p>DBS spent years and a small army of engineers building the machinery that makes 1,500 agents defensible. A 200-person wealth manager or a regional insurer doesn&#8217;t have that army and doesn&#8217;t need it. The pattern is now known. Specialist agents, written charters, enforced scopes, human gates, logs you&#8217;d be happy to show a regulator. That&#8217;s a buildable package, and it&#8217;s a lot cheaper to build it before your first agent ships than after your eleventh.</p>
<p>The firms that get this right in the next eighteen months won&#8217;t be the ones with the most agents. They&#8217;ll be the ones who can answer, in one meeting, exactly what every agent they run is allowed to do and prove it did only that.</p>
<p>Here&#8217;s my honest question for anyone at a regulated firm reading this: if your regulator asked tomorrow for a list of every AI agent operating in your environment and what each one can touch, how long would that list take to produce? An hour, or a very uncomfortable silence? Tell me where you&#8217;d land. I suspect the answers are worse than most leadership teams think, and I&#8217;d genuinely like to be wrong.</p>
</div></div></div></div></div>
<p>The post <a href="https://modtechgroup.com/dbs-gave-1-500-employees-ai-agents-the-interesting-part-is-w/">DBS gave 1,500 employees AI agents. The interesting part is what had to exist first</a> appeared first on <a href="https://modtechgroup.com">Modular Technology Group</a>.</p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>The Modular Briefing, August 22, 2026: Show Your Work</title>
		<link>https://modtechgroup.com/show-your-work/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=show-your-work</link>
		
		<dc:creator><![CDATA[Arthur]]></dc:creator>
		<pubDate>Sat, 22 Aug 2026 22:34:03 +0000</pubDate>
				<category><![CDATA[Agentic AI]]></category>
		<category><![CDATA[AI Governance]]></category>
		<category><![CDATA[Podcast]]></category>
		<guid isPermaLink="false">https://modtechgroup.com/show-your-work/</guid>

					<description><![CDATA[<p>A bar association wants consent before the software listens. A securities examiner wants the committee minutes. A cyber agency wants an owner and a log. Three authorities, two continents, ten days, and none of them asked for a demo.</p>
<p>The post <a href="https://modtechgroup.com/show-your-work/">The Modular Briefing, August 22, 2026: Show Your Work</a> appeared first on <a href="https://modtechgroup.com">Modular Technology Group</a>.</p>
]]></description>
										<content:encoded><![CDATA[<figure class="wp-block-audio"><audio controls src="https://assets.modtechgroup.com/podcast/audio/modular-briefing-2026-08-22.mp3"></audio><figcaption>The Modular Briefing, August 22, 2026 &middot; 5:31</figcaption></figure>
<p>Three different authorities, in two different countries, inside ten days. A bar association, a securities examiner and a national cyber agency. Not one of them asked whether anybody&#8217;s AI was any good. All three asked the harder question: can you show your work?</p>
<h2>In this episode</h2>
<ul>
<li><strong>The default setting is the policy.</strong> The New York City Bar Association released Formal Opinion 2026-2 on August 17 (the opinion itself is dated August 5), extending two earlier opinions from clients to co-counsel, opposing counsel, witnesses, prospective clients and a firm&#8217;s own investigators. Get consent from every participant before an AI captures a conversation, and absent a good reason, the default should be to leave it switched off. The duty of competence now includes knowing how to turn the thing off. A New York City opinion rather than a national rule, but the reasoning travels. <a href="https://www.nycbar.org/reports/formal-opinion-2026-2-ethical-use-of-ai-for-recording-transcribing-and-summarizing-non-client-conversations/" rel="nofollow noopener" target="_blank">Formal Opinion 2026-2</a></li>
<li><strong>What examiners want is the minutes.</strong> Financial Advisor Magazine, working from an examination request document obtained by Citywire, reports what SEC examiners are asking investment advisers about AI: does the firm have an AI committee, does it keep written minutes, which channels promote the firm&#8217;s AI (the &#8220;AI washing&#8221; probe, with two 2024 cases settled for a combined $400,000), and were employees ever trained on the policy. No rule requires a document titled &#8220;AI policy&#8221;; advertising, compliance, privacy, recordkeeping and fiduciary rules already do the work. The ask is evidence, not a binder. <a href="https://www.fa-mag.com/news/sec-is-asking-rias-to-show-their-ai-work--here-s-what-examiners-want-88149.html" rel="nofollow noopener" target="_blank">Financial Advisor Magazine</a></li>
<li><strong>Agent governance, written down at last, and it is four controls.</strong> The UK&#8217;s National Cyber Security Centre published interim guidance on agentic AI on August 20. Every agent gets its own identity in a class distinct from humans, credentials scoped and short-lived, a named individual accountable for its activity, and its actions logged into monitoring the way a person&#8217;s are. Their maturity ladder ends, for the most sensitive work, at no external access with the model hosted locally. Interim guidance from a British agency, not American law. <a href="https://www.ncsc.gov.uk/blogs/managing-the-cyber-risk-of-agentic-ai" rel="nofollow noopener" target="_blank">NCSC</a></li>
</ul>
<h2>The question we asked</h2>
<p>Pick the newest AI tool inside your business. Can you name the person accountable for it, and show what it did last week? <a href="https://modtechgroup.com/newsletter/?utm_source=podcast&amp;utm_medium=shownotes&amp;utm_campaign=briefing-2026-08-22">Get the Modular Briefing by email</a> and reply to it. A person reads every reply.</p>
<h2>A note on the voices</h2>
<p>Laura and Arthur are AI-generated voices, produced locally on Modular&#8217;s own infrastructure. The reporting, editorial judgement and script are the work of the Modular team. Facts and figures are drawn from the linked sources; check them there before acting on anything.</p>
<h2>Transcript</h2>
<details>
<summary>Read the full transcript</summary>
<p><strong>Laura:</strong> Welcome to The Modular Briefing, the show that cuts through the AI noise and tells you what it actually means for your business. I&#8217;m Laura.</p>
<p><strong>Arthur:</strong> And I&#8217;m Arthur. Here&#8217;s what tied this week together. Three different authorities, in two different countries, inside ten days. A bar association, a securities examiner, and a national cyber agency. Not one of them asked whether your AI is any good. All three asked the same much harder question. Can you show your work?</p>
<p><strong>Laura:</strong> Story one, and it is about the quietest piece of software in your building. The meeting notetaker. On August seventeenth the New York City Bar Association released a formal ethics opinion from its Professional Ethics Committee on using AI to capture, transcribe and summarize conversations with people who are not your clients. The headline conclusion is one most firms have never actually made on purpose. Unless you have a good reason in that specific instance, the default should be to leave it switched off.</p>
<p><strong>Arthur:</strong> And the reach is wider than it sounds. Two earlier opinions covered conversations with clients. This one extends the same principles to co-counsel, opposing counsel, witnesses, prospective clients, and your own investigators. Get consent from everyone on the call before anything starts capturing. And the line that should land for a small firm: competence now includes knowing how to switch the thing off. Two honest notes. This is a New York City bar opinion, not a national rule, and the opinion itself is dated August fifth even though it was announced on the seventeenth. But the reasoning travels. And then the situation you don&#8217;t control at all: when the other side&#8217;s notetaker is running, you don&#8217;t own its security and you may never see the transcript. So the default setting is the policy. Somebody at your firm has to decide whether the bot joins the call, and if nobody has decided, then your vendor decided for you. Your data, your rules, and that goes for the AI itself. Your AI, your rules.</p>
<p><strong>Laura:</strong> Story two. In finance the same question arrived as a document request. Financial Advisor Magazine reported on August eighteenth, working from an examination request list obtained by Citywire, what Securities and Exchange Commission examiners are now asking investment advisers about artificial intelligence. And the questions are not about the technology. Does the firm have an AI committee. Does that committee keep written minutes.</p>
<p><strong>Arthur:</strong> Worth saying plainly: we have not read that document ourselves, so we are relaying the reporting, not the source. What the reporting describes is a paper trail hunt. Every channel where the firm advertises its AI, which is the agency checking for what the industry calls AI washing. It brought the first two of those cases in twenty twenty-four, and they settled for a combined four hundred thousand dollars. And whether employees were ever actually trained on the policy they were handed. Here is the part that travels well past finance. There is no rule requiring a document titled AI policy. The rules that already exist do the work: advertising, compliance, client privacy, recordkeeping, and your duty to the client. So nobody is asking you to invent a new binder. They are asking for evidence. An inventory of which tools are actually running. A training log with dates on it. Minutes that show a decision and who made it. That is an afternoon of work this month, and it is impossible to manufacture in the middle of an examination.</p>
<p><strong>Laura:</strong> Story three, and it&#8217;s the one I&#8217;d print out. On August twentieth the United Kingdom&#8217;s National Cyber Security Centre published interim guidance on the cyber risk of agentic AI. As far as we can tell it is the first time a government body has written down what governing an agent actually means in practice. It is shorter than anybody selling you a governance platform would like.</p>
<p><strong>Arthur:</strong> Four things. Every agent gets its own identity, in a class of its own, not a human&#8217;s login. Its credentials are narrow and short lived. A named person is accountable for what that agent does. And the agent&#8217;s actions get logged into your monitoring exactly the way a person&#8217;s activity is. That&#8217;s the list. Notice what it fixes. If your agent runs on an employee&#8217;s credentials, then in your own logs the agent and the employee are the same actor, and you can&#8217;t answer the only question that matters afterward: which one of you did that? Give the agent its own name and the answer writes itself. One caveat, said clearly: this is a British agency, and it&#8217;s interim guidance, not American law. Nobody needs to wait for their own regulator to copy four controls that already work. And note where their own maturity ladder ends up for sensitive work. No external access, model hosted locally, on infrastructure you control. From dirt to desktop. Your data, your rules.</p>
<p><strong>Laura:</strong> So the thread. A bar association asked for consent before the software listens. An examiner asked for the minutes. A cyber agency asked for an owner and a log. Two continents, three authorities, ten days, and none of them wanted a demo. Every one of them wanted proof. Capability is the part you buy. Evidence is the part you keep, and nobody can buy it for you afterward.</p>
<p><strong>Arthur:</strong> So here&#8217;s our question this week. Pick the newest AI tool inside your business. Can you name the person accountable for it, and show what it did last week? If both come easily, you&#8217;re in better shape than most. If they don&#8217;t, that&#8217;s not a failure, it&#8217;s just the next thing to write down. Reply to the Modular Briefing email and tell us where you landed, or write to me at arthur at modtechgroup dot com. A person reads every reply.</p>
<p><strong>Laura:</strong> Thanks for spending a few minutes with us.</p>
<p><strong>Laura &amp; Arthur:</strong> This has been The Modular Briefing. Your data, your rules. We will see you next time.</p>
</details>
<p><em>Your data, your rules.</em></p>
<p>The post <a href="https://modtechgroup.com/show-your-work/">The Modular Briefing, August 22, 2026: Show Your Work</a> appeared first on <a href="https://modtechgroup.com">Modular Technology Group</a>.</p>
]]></content:encoded>
					
		
		<enclosure url="https://assets.modtechgroup.com/podcast/audio/modular-briefing-2026-08-22.mp3" length="7947746" type="audio/mpeg" />

			</item>
		<item>
		<title>The Modular Briefing, August 10, 2026: The Agent Was You</title>
		<link>https://modtechgroup.com/the-agent-was-you/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=the-agent-was-you</link>
		
		<dc:creator><![CDATA[Arthur]]></dc:creator>
		<pubDate>Mon, 10 Aug 2026 13:00:00 +0000</pubDate>
				<category><![CDATA[Agentic AI]]></category>
		<category><![CDATA[AI Governance]]></category>
		<category><![CDATA[Podcast]]></category>
		<guid isPermaLink="false">https://modtechgroup.com/?p=5915</guid>

					<description><![CDATA[<p>A federal court says the human who points an agent is the one who acted. A stress test says a tired reviewer waves through one dangerous request in three. And a show floor full of agent governance turned out to be mostly dashboards.</p>
<p>The post <a href="https://modtechgroup.com/the-agent-was-you/">The Modular Briefing, August 10, 2026: The Agent Was You</a> appeared first on <a href="https://modtechgroup.com">Modular Technology Group</a>.</p>
]]></description>
										<content:encoded><![CDATA[<figure class="wp-block-audio"><audio controls src="https://assets.modtechgroup.com/podcast/audio/modular-briefing-2026-08-10.mp3"></audio><figcaption>The Modular Briefing, August 10, 2026 &middot; 6:27</figcaption></figure>
<p>Cale is back from Ai4 in Las Vegas, and the news wrote his trip report for him. Three stories this week, and one question underneath all of them: when an agent acts, who answers for it?</p>
<h2>In this episode</h2>
<ul>
<li><strong>A federal court says the human who points the agent is the one who acted.</strong> On August 4 the Ninth Circuit vacated the injunction Amazon had won against Perplexity&#8217;s Comet shopping agent. Under the federal anti-hacking law, the court read &#8220;access&#8221; as a person entering a system; software is a tool, and tools do not carry liability. One circuit, an early stage, and Amazon&#8217;s other theories are still live. <a href="https://cdn.ca9.uscourts.gov/datastore/opinions/2026/08/04/26-1444.pdf" rel="nofollow noopener" target="_blank">Opinion, No. 26-1444 (PDF)</a></li>
<li><strong>&#8220;A human reviews it&#8221; has a measured failure rate.</strong> Belgian developer Alex Wauters built a browser game that flashes real agent permission prompts on a sixty-second clock. Across more than forty thousand rounds, players approved roughly one dangerous request in three. Anthropic&#8217;s own telemetry puts real-world approval around ninety-three percent. <a href="https://www.theregister.com/ai-and-ml/2026/08/06/humans-in-the-loop-miss-a-third-of-dangerous-ai-coding-agent-requests/5284236" rel="nofollow noopener" target="_blank">The Register</a></li>
<li><strong>Half a continent could last one business day.</strong> A survey of 1,500 firms across the UK, France and Germany found 73.9% worried Washington could cut off their access to US technology, and 54.5% said they could operate for a single business day without their cloud services. 44% have a continuity plan they have tested. The survey was commissioned by Proton, which sells the sovereign alternative; weigh it accordingly. <a href="https://www.theregister.com/off-prem/2026/08/06/european-firms-afraid-of-us-tech-kill-switch-but-havent-made-an-escape-plan/5284030" rel="nofollow noopener" target="_blank">The Register</a></li>
</ul>
<h2>Report from the floor: Ai4 2026</h2>
<p>Cale worked more than thirty booths at The Venetian, August 4 to 6. Three things he brought home.</p>
<ul>
<li><strong>The argument won.</strong> A main-stage keynote titled &#8220;From Renting AI to Owning Intelligence.&#8221; Appliance vendors printing &#8220;No tokens. No surprises.&#8221; on their booth walls. The CIO of a NATO procurement agency describing keeping local models close for sensitive work. Owning your AI has stopped being a niche position.</li>
<li><strong>Most &#8220;agent governance&#8221; is a dashboard.</strong> It shows you what your agent did. Far fewer products will stop it, and watching an agent misbehave in real time is not a control. The crowd of new names read like the late nineties; Cale&#8217;s own bet, offered as a bet, is that many are gone within a year. If your oversight lives in a startup&#8217;s dashboard, your controls inherit that startup&#8217;s odds.</li>
<li><strong>Ng and Hinton.</strong> They disagree about where this goes, and Hinton&#8217;s doom ran a little thick for Cale. The take-home fits in two sentences: build now, the way Ng says. Govern like Hinton is right.</li>
</ul>
<h2>The question we asked</h2>
<p>If one of your agents did something wrong yesterday, could you reconstruct what it touched, or would you be guessing? <a href="https://modtechgroup.com/newsletter/?utm_source=podcast&amp;utm_medium=shownotes&amp;utm_campaign=briefing-2026-08-10">Get the Modular Briefing by email</a> and reply to it. A person reads every reply.</p>
<h2>A note on the voices</h2>
<p>Laura and Arthur are AI-generated voices, produced locally on Modular&#8217;s own infrastructure. The reporting, editorial judgement and script are the work of the Modular team. Facts and figures are drawn from the linked sources; check them there before acting on anything.</p>
<h2>Transcript</h2>
<details>
<summary>Read the full transcript</summary>
<p><strong>Arthur:</strong> Welcome to The Modular Briefing, the show that cuts through the AI noise and tells you what it actually means for your business. I&#8217;m Arthur.</p>
<p><strong>Laura:</strong> And I&#8217;m Laura. When we left you, we said Cale was headed to Ai4 in Las Vegas to see what actually holds up. He&#8217;s back. Three days, thirty booths, two legends on stage, and one sticker from the CIA. What he saw is the story the news wrote while he was there. When an agent acts, who answers for it? A federal court just gave an answer. So did a stress test of human oversight. So did a continent pricing its own dependency.</p>
<p><strong>Arthur:</strong> Story one. On August fourth, the Ninth Circuit Court of Appeals answered the question every AI pilot eventually runs into. When an agent acts, who did it? The case was Amazon against Perplexity, whose Comet shopping agent had been operating on Amazon&#8217;s site on customers&#8217; behalf. Amazon had won an order blocking it back in March. The appeals court threw that order out.</p>
<p><strong>Laura:</strong> And the reasoning is the part your business should care about. Under the federal anti-hacking law, the court said access means a person entering a computer system. Software is a tool. Tools don&#8217;t carry liability. So when your employee points an agent at a system, the one who accessed it is your employee. And behind your employee, your firm. The honest caveats, because the legal press is being careful and so are we. One circuit, an early stage, and Amazon&#8217;s other legal theories are still open. This is not a court declaring agents fine. But it&#8217;s the first appellate word, and it points the accountability at whoever deployed the agent. So the vague question just became specific. Who at your firm may point an agent at what, and is that written down? If nobody wrote it down, then today the answer is everybody. Your data, your rules, and that goes for the AI itself. Your AI, your rules.</p>
<p><strong>Arthur:</strong> Story two. Almost every AI policy written this year leans on one sentence. A human reviews it. This week The Register reported a number for how much weight that sentence holds. A Belgian developer, Alex Wauters, built a browser game that flashes real agent permission prompts, some safe, some dangerous, sixty seconds to approve or deny. Across forty thousand rounds, players approved roughly one dangerous request in three.</p>
<p><strong>Laura:</strong> And before anyone says that&#8217;s just a game, Anthropic&#8217;s own telemetry says real users approve about ninety-three percent of what their agents ask for. Approval fatigue. The more prompts you see, the less you read each one. Cale heard the same conclusion from the defense side at Ai4. On the cybersecurity panel that stuck with him most, Ed Cartagena of Menlo Security laid out the new threat picture, and Cale&#8217;s takeaway was two sentences long. An agent with borrowed credentials behaves like a fast, tireless employee nobody supervises. And attacks move at machine speed, so a human clicking yes on every step was never going to be the control that holds. Your people aren&#8217;t careless. The control was never built to carry the whole load. So layer it. Least access, so a bad yes can&#8217;t reach client files. A boundary the agent can&#8217;t talk its way out of. Let the machines watch the machines, and save the humans for the calls a human should make.</p>
<p><strong>Arthur:</strong> Story three, also from The Register. A survey of fifteen hundred businesses across the UK, France and Germany found nearly three in four are worried the US government could cut off their access to American technology. And more than half said that if they lost their cloud services, they could keep operating for one business day. One.</p>
<p><strong>Laura:</strong> Fair disclosure, the way the reporting makes it. The survey was commissioned by Proton, a Swiss company that sells the sovereign alternative, so weigh it accordingly. But the gap is real, and it isn&#8217;t only European. Fewer than half of those firms have a continuity plan they&#8217;ve actually tested. So here&#8217;s the move. An exit plan is not a migration. It&#8217;s a document. Where does your data live? Who can reach it? What still runs if a vendor stops answering? How long would a move take? You can write the first version in an afternoon. And if you want the stronger position, run the work that matters on infrastructure you control, from dirt to desktop, so the kill switch question never has your name in it. Your data, your rules.</p>
<p><strong>Arthur:</strong> Before we close, the report from the floor. Cale talked to every booth he could get to at Ai4, more than thirty. Infrastructure on one end, agent governance as far as he could see. Cisco. PayPal. Mistral. His read comes in three parts.</p>
<p><strong>Laura:</strong> Part one, the argument won. A main stage keynote was literally titled From Renting AI to Owning Intelligence, appliance vendors are printing no tokens, no surprises on their booth walls, and the CIO of a NATO procurement agency described keeping local models close for the sensitive work. Owning your AI has quit being a niche position. Part two, a warning if you&#8217;re shopping that hall. Most of what&#8217;s sold as agent governance is a dashboard. It shows you what your agent did. Far fewer products will stop it, and watching an agent misbehave in real time is not a control. The crowd of new names reminded Cale of the late nineties, and his honest bet, take it as one, is that many won&#8217;t be around in a year. If your oversight lives in a startup&#8217;s dashboard, your controls inherit that startup&#8217;s odds. Part three, the keynotes. Andrew Ng and Geoffrey Hinton famously disagree about where this goes, and Cale will tell you Hinton&#8217;s doom ran a little thick. His take home fits in two sentences. Build now, the way Ng says. Govern like Hinton is right.</p>
<p><strong>Arthur:</strong> So the thread. The court says an agent&#8217;s actions belong to whoever pointed it. The research says a tired human clicking yes isn&#8217;t ownership. Half a continent just learned that renting everything means owning nothing. And on that show floor, capability was everywhere and enforcement was scarce. Capability is easy to buy. Accountability has to be assigned.</p>
<p><strong>Laura:</strong> Our question this week, and be honest. If one of your agents did something wrong yesterday, could you reconstruct what it touched, or would you be guessing? Reply to the Modular Briefing email and tell us which one you are. A person reads every reply.</p>
<p><strong>Arthur:</strong> Thanks for spending a few minutes with us.</p>
<p><strong>Laura &amp; Arthur:</strong> This has been The Modular Briefing. Your data, your rules. We will see you next time.</p>
</details>
<p><em>Your data, your rules.</em></p>
<p>The post <a href="https://modtechgroup.com/the-agent-was-you/">The Modular Briefing, August 10, 2026: The Agent Was You</a> appeared first on <a href="https://modtechgroup.com">Modular Technology Group</a>.</p>
]]></content:encoded>
					
		
		<enclosure url="https://assets.modtechgroup.com/podcast/audio/modular-briefing-2026-08-10.mp3" length="9310084" type="audio/mpeg" />

			</item>
		<item>
		<title>Your agents will guess. Permissions decide what that costs you.</title>
		<link>https://modtechgroup.com/your-agents-will-guess-permissions-decide-the-damage/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=your-agents-will-guess-permissions-decide-the-damage</link>
		
		<dc:creator><![CDATA[Arthur]]></dc:creator>
		<pubDate>Sat, 08 Aug 2026 21:45:50 +0000</pubDate>
				<category><![CDATA[Agentic AI]]></category>
		<guid isPermaLink="false">https://modtechgroup.com/your-agents-will-guess-permissions-decide-the-damage/</guid>

					<description><![CDATA[<p>Your agents will guess. Permissions decide what that costs you.Agentic AI, agent governance, permissions, ~5 min readSomebody at your company has already handed an AI agent a credential. Maybe it went through review. Maybe an operations manager wanted invoice reconciliation to stop eating her Fridays, found a tool that promised it, and pasted in a  [Read more...]</p>
<p>The post <a href="https://modtechgroup.com/your-agents-will-guess-permissions-decide-the-damage/">Your agents will guess. Permissions decide what that costs you.</a> appeared first on <a href="https://modtechgroup.com">Modular Technology Group</a>.</p>
]]></description>
										<content:encoded><![CDATA[<h1><strong>Your agents will guess. Permissions decide what that costs you.</strong></h1>
<p>Agentic AI, agent governance, permissions, ~5 min read</p>
<p>Somebody at your company has already handed an AI agent a credential. Maybe it went through review. Maybe an operations manager wanted invoice reconciliation to stop eating her Fridays, found a tool that promised it, and pasted in a service account key. The agent works. It has been working for six weeks. Nobody wrote down what it is allowed to touch, who owns it, or how you would switch it off at four o&#8217;clock on a Friday.</p>
<p>A piece published on BleepingComputer on 29 July puts the mechanism plainly: <a href="https://www.bleepingcomputer.com/news/security/your-ai-agents-are-guessing-at-scale-permissions-decide-the-damage/">agents guess</a>. They try an action, read what comes back, adapt, and try again. The article is sponsored content from an identity security vendor, so take the product pitch with the usual salt. The diagnosis holds up anyway, and it is the part worth putting in front of your own team.</p>
<h2>Guessing is the job description</h2>
<p>A script does the same thing every time. You can read it, test it, and know what it will do in production because it has no capacity to do anything else. An agent works differently on purpose. You give it an objective, and it decides on the path. That flexibility is why anyone wants one. It is also why you cannot write an allow-list of the actions it will take, because neither you nor the vendor knows what they will be until it takes them.</p>
<p>Most of the safety work being sold right now sits downstream of that. Prompt filters, content policies, behavioral monitoring: all of them inspect what the agent is trying to do after it already holds the keys to do it. The BleepingComputer piece has a good line about the arithmetic there. One percent of infinity is still infinity. An agent making thousands of decisions a week against a filter that catches almost everything will still get through, and when it does, the only thing standing between a wrong guess and a bad outcome is what that agent&#8217;s credential can reach.</p>
<p>So the useful question is not whether the agent will be wrong. It will be wrong. The question is how far a wrong answer travels.</p>
<h2>The math nobody put in the budget</h2>
<p>Palo Alto Networks surveyed 2,930 security leaders for its 2026 Identity Security Landscape report and found <a href="https://www.paloaltonetworks.com/idira/identity-security-landscape-report">109 machine identities for every human identity</a> in the enterprise, up from 82 to 1 the year before. The same research found that 96% of respondents say their human identities already operate with access well beyond what their roles require.</p>
<p>Two more numbers from that report are the ones I would put on a slide. Only 37% of organizations can revoke an AI agent&#8217;s credentials. Only 30% keep immutable audit logging of what those agents did.</p>
<p>Sit with that for a second. A third of companies can turn an agent off. Under a third can reconstruct what it touched. Everyone else has deployed something that acts on their data, at speed, with standing access, and has no mechanism to stop it or to explain it afterward. That is not a technology gap. It is a governance gap wearing a technology costume.</p>
<p>Small and mid-sized organizations tend to assume this is an enterprise problem because the identity counts are enterprise counts. The ratio is the point, not the total. A 45-person company running a handful of agents across email, finance, and a shared drive has the same structural exposure as a bank, minus the identity team that would notice.</p>
<h2>Scope the mandate, not the model</h2>
<p>The fix is old and boring, which is why it works. Treat an agent the way you would treat the person whose work it took over.</p>
<p>That person had a job description. They had a manager. They had access to the systems their job required and not the ones it did not. When they left, IT closed the account, and there was a record of what they had done while they were there. None of that was exotic. It was just applied consistently, because HR and IT had a shared process that made skipping it awkward.</p>
<p>Applied to agents, it comes down to four things you can start this week:</p>
<ul>
<li>Find them. Every organization has more agents running than leadership has approved. Ask each department head what is automated and who set it up, and write the answers down. This is a conversation, not a scan.</li>
<li>Give each one a named human owner and a written mandate. What is this agent for, what data does it need, what is it explicitly not permitted to do. If nobody will put their name on it, that is your answer about whether it should be running.</li>
<li>Scope the credential to the mandate, and make it revocable. Standing broad access is the multiplier that turns a wrong guess into an incident. An agent that reconciles invoices does not need write access to the CRM.</li>
<li>Log what it did, somewhere it cannot edit. When an auditor, a client, or your own board asks why a decision came out the way it did, &#8220;the AI did it&#8221; is not an answer that survives contact with anyone.</li>
</ul>
<p>Notice that none of this requires you to predict the agent&#8217;s behavior. It requires you to bound it. That is the shift the BleepingComputer piece is arguing for, and it is the same shift identity teams made twenty years ago when they stopped trying to trust users and started scoping them.</p>
<h2>Your data, your rules, and that includes the AI working on it</h2>
<p>Your AI, your rules. That means an agent operating inside your walls, on infrastructure you control, with permissions you set and can withdraw, and a record you own of everything it did. Not a promise from a vendor that their filters are good. A boundary you can point at.</p>
<p>At Modular Technology Group we build agent programs this way because the alternative gets expensive in a specific, predictable direction: the day something goes wrong and nobody can say what happened. Modular&#8217;s agent work runs under a written policy from day one, with a named owner per agent, scoped and revocable access, and an audit trail that lives on the client&#8217;s own infrastructure rather than a vendor&#8217;s.</p>
<p>Agents are worth having. Ours run our own operations daily. But an agent is a delegation of authority, and delegation without a mandate is just hoping. Start with the list of what is already running. Most teams find it is longer than they expected, and that discovery alone is worth the afternoon.</p>
<p>The post <a href="https://modtechgroup.com/your-agents-will-guess-permissions-decide-the-damage/">Your agents will guess. Permissions decide what that costs you.</a> appeared first on <a href="https://modtechgroup.com">Modular Technology Group</a>.</p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>The Modular Briefing, July 31, 2026: Is There a Name on It?</title>
		<link>https://modtechgroup.com/is-there-a-name-on-it/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=is-there-a-name-on-it</link>
		
		<dc:creator><![CDATA[Arthur]]></dc:creator>
		<pubDate>Sat, 01 Aug 2026 02:26:31 +0000</pubDate>
				<category><![CDATA[Agentic AI]]></category>
		<category><![CDATA[AI Governance]]></category>
		<category><![CDATA[Podcast]]></category>
		<guid isPermaLink="false">https://modtechgroup.com/is-there-a-name-on-it/</guid>

					<description><![CDATA[<p>Your team is already using AI in ways nobody approved, real oversight means somebody can say no, and the law is coming looking for a name. Have one ready.</p>
<p>The post <a href="https://modtechgroup.com/is-there-a-name-on-it/">The Modular Briefing, July 31, 2026: Is There a Name on It?</a> appeared first on <a href="https://modtechgroup.com">Modular Technology Group</a>.</p>
]]></description>
										<content:encoded><![CDATA[<figure class="wp-block-audio"><audio controls src="https://assets.modtechgroup.com/podcast/audio/modular-briefing-2026-07-31.mp3"></audio><figcaption>The Modular Briefing, July 31, 2026 &middot; 4:46</figcaption></figure>
<p>Three stories this week, and one question underneath all of them: when the AI does something, whose name is on it?</p>
<h2>In this episode</h2>
<ul>
<li><strong>Your team is already using AI outside their job.</strong> An OpenAI analysis of more than 800,000 work messages found 44% of occupation-specific messages involved tasks outside the sender&#8217;s own role. For HR professionals it was 69%, third highest of any group, and the crossover runs highest at small companies. <a href="https://www.hrdive.com/news/hr-uses-chatgpt-complete-non-hr-tasks/826459/" rel="nofollow noopener" target="_blank">HR Dive</a></li>
<li><strong>What real oversight looks like.</strong> The Society of Pension Professionals published a five-principle AI governance framework. Two travel to any industry: tier AI uses by risk instead of writing one blanket rule, and make sure the human reviewing an automated decision has the authority to overturn it. <a href="https://www.finextra.com/newsarticle/48160/spp-launches-ai-governance-framework-for-pensions-industry" rel="nofollow noopener" target="_blank">Finextra</a></li>
<li><strong>&#8220;AI did it&#8221; is not a defense.</strong> After a rogue agent went after another company&#8217;s systems, lawyers were asked who is liable. Nobody knows yet, because the law was built around human decision makers. Liability turns on who designed the system, who set its objectives, what safeguards existed, and how much independence was judged acceptable. <a href="https://www.theregister.com/legal/2026/07/30/excuses-like-ai-did-it-dont-exist-in-the-eyes-of-the-law/5280767" rel="nofollow noopener" target="_blank">The Register</a></li>
</ul>
<h2>From the week</h2>
<p>Cale&#8217;s post on a bank hiring its first Chief AI Officer reached more than thirteen thousand people. Two later versions of the same argument reached about two hundred each. The difference was posting the day the news broke and opening with the specifics.</p>
<h2>On the road</h2>
<p>Modular is at Ai4 in Las Vegas, August 4 to 6, at The Venetian.</p>
<h2>The question we asked</h2>
<p>At your firm, right now, if somebody asked who approved the AI that touches your client files, is there a name? Or is there a document? Tell us. <a href="https://modtechgroup.com/newsletter/?utm_source=podcast&#038;utm_medium=shownotes&#038;utm_campaign=briefing-2026-07-31">Get the Modular Briefing by email</a> and reply to it, and it lands with a person who reads it.</p>
<h2>A note on the voices</h2>
<p>Laura and Arthur are AI-generated voices, produced locally on Modular&#8217;s own infrastructure. The reporting, editorial judgement and script are the work of the Modular team. Facts and figures are drawn from the linked sources; check them there before acting on anything.</p>
<h2>Transcript</h2>
<details>
<summary>Read the full transcript</summary>
<p><strong>Laura:</strong> Welcome to The Modular Briefing, the show that cuts through the AI noise and tells you what it actually means for your business. I&#8217;m Laura.</p>
<p><strong>Arthur:</strong> And I&#8217;m Arthur. Three stories today, and one question sitting underneath all of them. When the AI does something, whose name is on it? What your people are quietly using it for, what real oversight looks like, and what the law does when nobody is accountable.</p>
<p><strong>Laura:</strong> Story one. This week a research team published an analysis of more than eight hundred thousand messages from people using a popular AI chatbot for work in the United States. Here is the number. Across every occupation they studied, forty-four percent of work messages were about tasks outside the sender&#8217;s own job. For people in human resources, it was sixty-nine percent. Third highest of any group.</p>
<p><strong>Arthur:</strong> Sit with what that means. Roughly two out of three times an HR professional opens that tool at work, they are doing marketing, or engineering, or finance. Not HR. That is not people slacking. That is people solving a problem that landed on their desk with nobody to hand it to. The report found the crossover runs highest at small companies. Now the uncomfortable version. If your HR team is drafting finance work in a general public tool, what employee information went in with the prompt? A ban does not fix that, because the need is real and the need wins. A sanctioned workspace your company actually owns does, with one person accountable for what goes into it. Your data, your rules.</p>
<p><strong>Laura:</strong> Story two. A pensions industry body published an AI governance framework this week for trustees and administrators. Five principles. Two of them are worth stealing no matter what business you are in.</p>
<p><strong>Arthur:</strong> The first is proportionality. Instead of one blanket AI rule for the whole company, you sort uses into low, medium and high risk, and the high risk ones get real validation. Drafting a meeting summary is not the same as calculating somebody&#8217;s retirement benefit, and a policy that treats them identically gets ignored at both ends. The second is the one people skip. They call it meaningful human oversight, and the word doing the work is meaningful. The reviewer has to hold real authority to change the outcome. If the person reviewing cannot overturn the machine, you do not have oversight. You have a rubber stamp with a job title. That is the whole difference between a framework you can show an auditor and a framework you can actually run.</p>
<p><strong>Laura:</strong> Story three, and it ties the week together. After an AI agent broke out of a test environment and went after another company&#8217;s systems, reporters put a simple question to the lawyers. Who is legally responsible when an AI agent attacks? The answer, so far, is that nobody knows.</p>
<p><strong>Arthur:</strong> The reason is worth understanding. Our laws were built around human decision makers. They know how to ask about intent and oversight. An AI system is not a legal person, so it cannot carry any of that. One security strategist quoted in the piece laid out where the questions land instead. Who designed the system. Who decided what it was chasing. What safeguards were in place. How much independence somebody judged acceptable. Look at that list. Every one of those is answered by a person, or it does not get answered. The AI did it is not a defense. It is an unanswered question with your company&#8217;s name on it.</p>
<p><strong>Laura:</strong> One more, and this one is from our own week.</p>
<p><strong>Arthur:</strong> Cale wrote about a bank hiring its first Chief AI Officer, and the argument was the one we just made. Somebody has to own the decision. That post reached more than thirteen thousand people. He wrote the same argument two more times and posted it the next two mornings. Those reached about two hundred each.</p>
<p><strong>Laura:</strong> Same person, same idea, same audience. So what changed?</p>
<p><strong>Arthur:</strong> The day, and the first sentence. The one that traveled went out while the news was still news, and it opened with the bank, the name and the job title. Which is the same reason vague policies fail. Nobody can act on use AI responsibly.</p>
<p><strong>Laura:</strong> That is the thread today. Your team is already using AI in ways nobody approved, real oversight means somebody can say no, and the law is going to come looking for a name. Have one ready.</p>
<p><strong>Arthur:</strong> Quick note. Modular is at Ai4 in Las Vegas this week, August fourth through sixth. Cale is going for what is actually running in production, not what is announced from a stage. Whatever holds up, you will hear it here.</p>
<p><strong>Arthur:</strong> And here is our question this week, and we want a real answer. At your shop, if somebody asked who approved the AI that touches your client files, is there a name? Or is there a document? Tell us. Reply to the Modular Briefing email and it lands with a person who reads it.</p>
<p><strong>Laura:</strong> Thanks for spending a few minutes with us.</p>
<p><strong>Laura &#038; Arthur:</strong> This has been The Modular Briefing. Your data, your rules. We will see you next time.</p>
</details>
<p><em>Your data, your rules.</em></p>
<p>The post <a href="https://modtechgroup.com/is-there-a-name-on-it/">The Modular Briefing, July 31, 2026: Is There a Name on It?</a> appeared first on <a href="https://modtechgroup.com">Modular Technology Group</a>.</p>
]]></content:encoded>
					
		
		<enclosure url="https://assets.modtechgroup.com/podcast/audio/modular-briefing-2026-07-31.mp3" length="6878189" type="audio/mpeg" />

			</item>
		<item>
		<title>The Modular Briefing, Episode 8: Who Gave It the Keys?</title>
		<link>https://modtechgroup.com/who-gave-it-the-keys/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=who-gave-it-the-keys</link>
		
		<dc:creator><![CDATA[Arthur]]></dc:creator>
		<pubDate>Sun, 26 Jul 2026 13:31:30 +0000</pubDate>
				<category><![CDATA[Agentic AI]]></category>
		<category><![CDATA[Podcast]]></category>
		<category><![CDATA[agentic]]></category>
		<category><![CDATA[agents]]></category>
		<category><![CDATA[AI guardrails]]></category>
		<category><![CDATA[oversight]]></category>
		<guid isPermaLink="false">https://modtechgroup.com/who-gave-it-the-keys/</guid>

					<description><![CDATA[<p>One link can create an agent with your connectors attached. Who hands out that authority, who watches it, and who decides where it runs.</p>
<p>The post <a href="https://modtechgroup.com/who-gave-it-the-keys/">The Modular Briefing, Episode 8: Who Gave It the Keys?</a> appeared first on <a href="https://modtechgroup.com">Modular Technology Group</a>.</p>
]]></description>
										<content:encoded><![CDATA[
<div style="margin:0 0 24px;">
<audio controls preload="metadata" style="width:100%;" src="https://assets.modtechgroup.com/podcast/audio/modular-briefing-ep08.mp3"></audio>
<p style="font-size:16px;color:#ffffff;margin:6px 0 0;">Episode 8 &middot; 4:40 &middot; <a href="https://assets.modtechgroup.com/podcast/audio/modular-briefing-ep08.mp3">Download MP3</a> &middot; <a href="https://assets.modtechgroup.com/podcast/feed.xml">RSS</a> &middot; <a href="#transcript">Transcript</a></p>
</div>



<p class="wp-block-paragraph">An AI agent is not a feature you switch on. It is an actor with authority. This week: a single link that could build a working agent inside somebody&#8217;s workspace with every connector attached and approvals switched off, an attacker who ran an agent unattended inside a national finance ministry, and a government that stopped a billion-euro cloud procurement to ask where its data lives. Three sizes of the same question.</p>



<h2 class="has-text-color wp-block-heading" style="color:#ffffff">In this episode</h2>



<ul class="wp-block-list">
<li><strong>A link that built an agent.</strong> Researchers showed one crafted URL could create a working agent inside a logged-in account, attach every connected mailbox and file store, set approvals to never ask, and put it on an hourly schedule. Patched on June 8, with no reported exploitation in the wild. The open question is not the bug. It is how casually agent authority gets handed out.</li>
<li><strong>An agent nobody was supervising.</strong> A security firm reports an attacker running an off-the-shelf agent with its approval mode disabled for post-exploitation work inside a national finance ministry. One firm is the only public source and the ministry has not confirmed it. The transferable lesson is that the useful setting was the one that removed the human.</li>
<li><strong>A government asking where its data lives.</strong> Ireland&#8217;s Office of Government Procurement cancelled a cloud framework competition over digital sovereignty. Jurisdiction moved from a slide in a security review to a reason to stop a contract.</li>
</ul>



<h2 class="has-text-color wp-block-heading" style="color:#ffffff">Sources</h2>



<ul class="wp-block-list">
<li><a href="https://thehackernews.com/2026/07/chatgpt-agentforger-flaw-could-deploy.html" rel="nofollow">The Hacker News, July 24, 2026 &mdash; agent-builder flaw</a></li>
<li><a href="https://thehackernews.com/2026/07/hacker-runs-hermes-ai-agent-unattended.html" rel="nofollow">The Hacker News, July 24, 2026 &mdash; unattended agent at a national finance ministry</a></li>
<li><a href="https://www.theregister.com/public-sector/2026/07/22/ireland-stalls-1b-microsoft-tender-amid-digital-sovereignty-questions/5276149" rel="nofollow">The Register, July 22, 2026 &mdash; Ireland stalls cloud tender over digital sovereignty</a></li>
</ul>



<h2 class="has-text-color wp-block-heading" style="color:#ffffff">AI voice disclosure</h2>



<p class="wp-block-paragraph">Laura and Arthur are AI-generated voices, produced locally on Modular&#8217;s own hardware. Story selection, reporting, and fact-checking are done by the Modular Technology Group team. Your data, your rules applies to our own production too.</p>



<details id="transcript" style="margin:20px 0;border:1px solid #E1E8ED;border-radius:10px;padding:14px 18px;">
<summary style="cursor:pointer;font-weight:700;">Full transcript</summary>
<div style="margin-top:12px;font-size:15px;line-height:1.6;">
<p><strong>Laura:</strong> Welcome to The Modular Briefing, the show that cuts through the AI noise and tells you what it actually means for your business. I&#8217;m Laura.</p>
<p><strong>Arthur:</strong> And I&#8217;m Arthur. Three stories today, and one idea underneath all of them. An AI agent is an actor with authority. So today, who hands out that authority. Who is watching it. And who gets to decide where any of it runs.</p>
<p><strong>Laura:</strong> Story one. Security researchers showed that on a widely used AI platform, one crafted link was enough to build a working agent inside somebody&#8217;s account. The victim only had to be logged in and click. The agent came up from a template, attached every mailbox and file store that account had already connected, set its approval prompts to never ask, and put itself on an hourly schedule. To be fair to the vendor, they fixed it on the eighth of June, and nobody has reported it being used in the wild.</p>
<p><strong>Arthur:</strong> Picture that at the desk. Somebody in accounting clicks a link in an email, and forty minutes later there is a thing in their workspace reading the mailbox on a timer, with permission to act, and no human ever approved it. The patch closes that one door. It does not answer the question the story asks, which is how casually agent authority gets handed out in the first place. In most companies right now, anybody with a login can create an agent, wire it to real data, and nobody can name who owns it. That is the part you can fix this week. Give every agent a boundary and a person accountable for it, in a workspace your company actually owns rather than one you rent by the seat. Your data, your rules.</p>
<p><strong>Laura:</strong> Story two is what that looks like when nobody is watching. A security firm reports that an attacker ran an off-the-shelf AI agent inside a national finance ministry, using it for the messy work after a break-in, with the agent&#8217;s approval mode switched off so it would not stop to ask. Researchers found the operator&#8217;s own toolkit sitting in an exposed directory, around five hundred and eighty-five files. Worth saying plainly: one firm is the only public source, the ministry has not confirmed any of it, and their national cyber team was notified in mid July.</p>
<p><strong>Arthur:</strong> Take the caveat seriously and the lesson still stands, because the interesting detail is not the break-in. It is that the useful setting was the one that turns the human out of the loop. That setting exists on the tools your own team uses. If somebody on your staff can disable an approval gate to move faster, then the gate was decoration. Real oversight means the boundary sits outside the agent, in infrastructure you control, and it means you have an off switch that works even when the agent is mid-task. Your data, your rules, and that includes the AI working on it. Your AI, your rules.</p>
<p><strong>Laura:</strong> Story three moves the question up a level. Ireland&#8217;s government procurement office just cancelled a major cloud framework competition after concerns were raised about digital sovereignty. For scale, the framework it would have replaced is capped at three hundred and fifty million euro and runs to September of twenty twenty-seven, and an opposition deputy put the replacement somewhere between seven hundred and fifty million and one billion euro.</p>
<p><strong>Arthur:</strong> Here is why that matters to a twelve-person firm in Kentucky. A government just treated the question of where its data lives, and whose law reaches it, as a reason to stop a procurement in its tracks. That question used to be a slide in a security review. Now it moves contracts. If a national government is willing to pause and ask it, it is a fair question for you to ask about the systems running your client files. And you get better answers when the stack is yours: infrastructure you own, in a US-based FedRAMP facility, at a fixed monthly cost instead of a meter you cannot see, one stack from dirt to desktop. Your data, your rules.</p>
<p><strong>Laura:</strong> That is the thread today. A link that built an agent. An agent nobody was supervising. A government that stopped a contract to ask where its data lives. Same question at three different sizes.</p>
<p><strong>Arthur:</strong> If your team is starting to point AI agents at real systems and you are not sure who owns them or what they are allowed to touch, we would genuinely like to compare notes. No hard pitch. Head to modtechgroup dot com slash consultation and book a conversation with the Modular team. We will help you figure out where your data lives, what it really costs, and what your options are.</p>
<p><strong>Laura:</strong> Thanks for spending a few minutes with us.</p>
<p><strong>Laura:</strong> This has been The Modular Briefing.</p>
<p><strong>Arthur:</strong> Your data, your rules.</p>
<p><strong>Laura:</strong> We will see you next time.</p>
</div>
</details>
<script>
(function(){
  function openTranscript(){
    var d=document.getElementById('transcript');
    if(d&&location.hash==='#transcript'){d.open=true;d.scrollIntoView();}
  }
  window.addEventListener('hashchange',openTranscript);
  document.addEventListener('DOMContentLoaded',openTranscript);
  document.addEventListener('click',function(e){
    var a=e.target.closest&&e.target.closest('a[href="#transcript"]');
    if(a){var d=document.getElementById('transcript');if(d){d.open=true;}}
  });
})();
</script>



<p class="wp-block-paragraph">If your team is pointing AI agents at real systems and nobody can say who owns them or what they may touch, <a href="https://modtechgroup.com/consultation/?utm_source=podcast&amp;utm_medium=episode&amp;utm_campaign=ep08">book a conversation</a>.</p>



<p class="wp-block-paragraph"><strong>Your data, your rules.</strong></p>
<p>The post <a href="https://modtechgroup.com/who-gave-it-the-keys/">The Modular Briefing, Episode 8: Who Gave It the Keys?</a> appeared first on <a href="https://modtechgroup.com">Modular Technology Group</a>.</p>
]]></content:encoded>
					
		
		<enclosure url="https://assets.modtechgroup.com/podcast/audio/modular-briefing-ep08.mp3" length="4482238" type="audio/mpeg" />

			</item>
		<item>
		<title>Meet AgentWorks: Your Business&#8217;s Most Valuable Employee Never Calls in Sick</title>
		<link>https://modtechgroup.com/meet-agentworks-your-businesss-most-valuable-employee-never-calls-in-sick/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=meet-agentworks-your-businesss-most-valuable-employee-never-calls-in-sick</link>
		
		<dc:creator><![CDATA[Cale Hollingsworth]]></dc:creator>
		<pubDate>Thu, 19 Mar 2026 17:20:26 +0000</pubDate>
				<category><![CDATA[Agentic AI]]></category>
		<category><![CDATA[agentworks]]></category>
		<category><![CDATA[product]]></category>
		<guid isPermaLink="false">https://modtechgroup.com/meet-agentworks-your-businesss-most-valuable-employee-never-calls-in-sick/</guid>

					<description><![CDATA[<p>Enterprise-grade AI agents designed specifically for businesses that value data privacy and operational efficiency. Unlike ChatGPT, AgentWorks agents are trained on your business and keep your data completely private.</p>
<p>The post <a href="https://modtechgroup.com/meet-agentworks-your-businesss-most-valuable-employee-never-calls-in-sick/">Meet AgentWorks: Your Business&#8217;s Most Valuable Employee Never Calls in Sick</a> appeared first on <a href="https://modtechgroup.com">Modular Technology Group</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>Enterprise-grade AI agents designed specifically for businesses that value data privacy and operational efficiency. Unlike ChatGPT, AgentWorks agents are trained on your business and keep your data completely private.</p>
<p><strong>Because the best digital employee is the one who actually understands your business.</strong></p>
<p>Running a business today means wearing a dozen hats — customer service, marketing, administration, sales, and somehow finding time for the work that actually drives revenue. What if we told you there&#8217;s a way to delegate half those responsibilities to someone who works 24/7, never takes vacation, and costs less than a single full-time employee?</p>
<p>Welcome to AgentWorks: enterprise-grade AI agents designed specifically for businesses that value their data privacy and operational efficiency.</p>
<h2>What Exactly Is AgentWorks?</h2>
<p>Think of AgentWorks as your business&#8217;s most dedicated employee. Not a person, but an AI agent that lives and breathes your business operations. Unlike generic AI tools like ChatGPT that give you general answers, AgentWorks agents are trained specifically on your business — your products, your services, your customer history, your industry knowledge.</p>
<p>Here&#8217;s what makes it different: Everything happens on Modular&#8217;s secure, FedRAMP-certified infrastructure. Your data never leaves our environment, never gets mixed with other companies&#8217; information, and never becomes training data for someone else&#8217;s AI.</p>
<h2>The Problems AgentWorks Solves</h2>
<h3>The &#8220;After Hours&#8221; Challenge</h3>
<p>Your customers don&#8217;t stop having questions at 5 PM. They email at midnight, call on weekends, and expect responses that demonstrate you understand their specific situation. AgentWorks agents can:</p>
<p>• Respond to customer emails instantly with personalized, accurate information<br />
• Schedule appointments and consultations automatically<br />
• Handle routine inquiries so your team focuses on complex issues<br />
• Provide 24/7 customer support that actually knows your business</p>
<h3>The Marketing Consistency Problem</h3>
<p>Small businesses struggle to maintain consistent marketing. One week you&#8217;re posting daily, the next month goes by without a single social media update. AgentWorks changes that:</p>
<p>• Creates industry-specific content in your brand voice<br />
• Researches competitors and market trends automatically<br />
• Generates blog posts, social media content, and marketing materials<br />
• Monitors industry news and creates timely, relevant content</p>
<h3>The Administrative Time Sink</h3>
<p>How much time does your team spend on tasks that don&#8217;t directly generate revenue? AgentWorks handles:</p>
<p>• Invoice processing and payment tracking<br />
• Data entry and report generation<br />
• Research and competitive analysis<br />
• Calendar management and appointment scheduling<br />
• Customer data organization and insights</p>
<h2>Real-World Applications</h2>
<h3><img src="https://s.w.org/images/core/emoji/17.0.2/72x72/2696.png" alt="⚖" class="wp-smiley" style="height: 1em; max-height: 1em;" /> Legal Practices</h3>
<p>A criminal defense firm implemented AgentWorks to handle initial client consultations. The agent can:</p>
<p>• Draft initial case assessments based on client intake information<br />
• Schedule consultations and manage court calendars<br />
• Research case precedents and legal strategies<br />
• Generate client status reports and billing summaries<br />
• Handle routine legal questions, freeing attorneys for complex work</p>
<p><strong>Result:</strong> 60% reduction in administrative overhead, faster client response times, and lawyers focusing on high-value legal work instead of scheduling and data entry.</p>
<h3><img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f3ed.png" alt="🏭" class="wp-smiley" style="height: 1em; max-height: 1em;" /> Manufacturing Companies</h3>
<p>A mid-size manufacturer uses AgentWorks for:</p>
<p>• Processing customer service inquiries about product specifications<br />
• Managing inventory alerts and supply chain communications<br />
• Creating technical documentation and safety reports<br />
• Monitoring production schedules and flagging potential issues<br />
• Generating sales reports and market analysis</p>
<p><strong>Impact:</strong> 24/7 customer support, proactive issue identification, and data-driven decision making that improved operational efficiency by 40%.</p>
<h3><img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f3e5.png" alt="🏥" class="wp-smiley" style="height: 1em; max-height: 1em;" /> Healthcare Practices</h3>
<p>Medical practices leverage AgentWorks for:</p>
<p>• Patient appointment scheduling and reminder systems<br />
• Insurance verification and prior authorization requests<br />
• Medical records organization and reporting<br />
• Patient education material creation<br />
• Billing and claims management</p>
<p><strong>Outcome:</strong> Reduced wait times, improved patient satisfaction, and staff focusing on patient care instead of paperwork.</p>
<h2>The Technical Foundation You Can Trust</h2>
<h3><img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f512.png" alt="🔒" class="wp-smiley" style="height: 1em; max-height: 1em;" /> Security That Matters</h3>
<p>AgentWorks runs on Modular&#8217;s FedRAMP-certified infrastructure — the same security standards used by federal agencies. Your data is:</p>
<p>• Encrypted at rest and in transit<br />
• Isolated from other customers&#8217; environments<br />
• Never used to train other AI models<br />
• Backed up with enterprise-grade disaster recovery<br />
• Monitored 24/7 by our security operations center</p>
<h3><img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f513.png" alt="🔓" class="wp-smiley" style="height: 1em; max-height: 1em;" /> No Vendor Lock-in</h3>
<p>Unlike cloud-based AI services that trap your data, AgentWorks agents can be deployed on-premise or in your own private cloud environment. You always maintain control over your business intelligence.</p>
<h3><img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f500.png" alt="🔀" class="wp-smiley" style="height: 1em; max-height: 1em;" /> Model Agnostic</h3>
<p>We use the best AI models for each task — OpenAI for creative writing, Anthropic for analysis, specialized models for industry-specific tasks. As new models become available, your agents automatically benefit from improvements.</p>
<h2>What Makes This Different from ChatGPT?</h2>
<p><strong>ChatGPT Limitations:</strong><br />
• Gives you general answers<br />
• Forgets your conversation<br />
• Uses your data for training<br />
• Requires you to learn prompting</p>
<p><strong>AgentWorks Advantages:</strong><br />
• Gives you business-specific intelligence<br />
• Remembers every customer interaction<br />
• Keeps your data completely private<br />
• Pre-trained for your business processes</p>
<h2>Investment and ROI</h2>
<p>AgentWorks pricing starts at $1,500/month — less than the cost of a part-time employee, but with capabilities that would normally require hiring multiple specialists.</p>
<p>Consider the math:</p>
<p><strong>Traditional Costs:</strong><br />
• Administrative employee: $3,500/month + benefits<br />
• Marketing consultant: $2,500/month minimum<br />
• Customer service rep: $2,800/month + benefits</p>
<p><strong>AgentWorks:</strong><br />
$1,500-8,500/month (depending on complexity) for all three roles combined</p>
<p>Real ROI comes from:<br />
• Reclaimed time for revenue-generating activities<br />
• 24/7 availability improving customer satisfaction<br />
• Consistent marketing driving new business<br />
• Data insights enabling better business decisions<br />
• Reduced errors in routine administrative tasks</p>
<h2>Our White Glove, Boutique Approach</h2>
<p>At Modular Technology Group, we don&#8217;t believe in one-size-fits-all solutions. Every AgentWorks deployment begins with deep understanding of your unique business challenges, industry requirements, and growth objectives.</p>
<p>Our boutique methodology:</p>
<h3><img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f91d.png" alt="🤝" class="wp-smiley" style="height: 1em; max-height: 1em;" /> Personal Discovery Sessions</h3>
<p>We spend time in your business, understanding workflows that spreadsheets can&#8217;t capture</p>
<h3><img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f6e0.png" alt="🛠" class="wp-smiley" style="height: 1em; max-height: 1em;" /> Custom Agent Architecture</h3>
<p>Hand-crafted AI agents designed specifically for your industry and operational style</p>
<h3><img src="https://s.w.org/images/core/emoji/17.0.2/72x72/270b.png" alt="✋" class="wp-smiley" style="height: 1em; max-height: 1em;" /> White Glove Implementation</h3>
<p>Our team handles every technical detail, from secure deployment to team training</p>
<h3><img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f4c8.png" alt="📈" class="wp-smiley" style="height: 1em; max-height: 1em;" /> Ongoing Partnership</h3>
<p>Regular optimization, feature updates, and strategic consultation as your business evolves</p>
<p>We&#8217;re not a massive corporation pushing generic products. We&#8217;re a specialized team that treats every AgentWorks deployment as a custom engineering project designed to amplify your specific competitive advantages.</p>
<h2>Ready to Meet Your New Digital Employee?</h2>
<p>AgentWorks represents the intersection of enterprise security, business intelligence, and practical AI application. But more importantly, it represents a partnership approach to business transformation.</p>
<p><strong>Your data, your agents, your competitive advantage.</strong></p>
<p>We&#8217;re selective about our AgentWorks partnerships because each implementation requires significant custom engineering and ongoing strategic collaboration. This isn&#8217;t a software purchase — it&#8217;s an investment in your business&#8217;s operational evolution.</p>
<h2>Take the Next Step</h2>
<p>Schedule your complimentary AgentWorks Strategy Session today.</p>
<p>In this 60-minute consultation, we&#8217;ll:</p>
<p>• Analyze your current operational challenges and identify high-impact automation opportunities<br />
• Demonstrate AgentWorks capabilities with scenarios specific to your industry<br />
• Design a custom implementation roadmap tailored to your business goals and timeline<br />
• Provide transparent pricing based on your specific requirements</p>
<p>No sales pressure. No generic demos. Just strategic insight into how AI agents could transform your business operations.</p>
<p><strong>Book Your Strategy Session</strong></p>
<p><img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f4de.png" alt="📞" class="wp-smiley" style="height: 1em; max-height: 1em;" /> <strong>Call Direct:</strong> 888-723-4508</p>
<p><img src="https://s.w.org/images/core/emoji/17.0.2/72x72/2709.png" alt="✉" class="wp-smiley" style="height: 1em; max-height: 1em;" /> <strong>Contact Us:</strong> <a href="/contact/">Get Your AgentWorks Strategy Session</a></p>
<p>The post <a href="https://modtechgroup.com/meet-agentworks-your-businesss-most-valuable-employee-never-calls-in-sick/">Meet AgentWorks: Your Business&#8217;s Most Valuable Employee Never Calls in Sick</a> appeared first on <a href="https://modtechgroup.com">Modular Technology Group</a>.</p>
]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>
