<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
<title>PrivacyFirst Insights</title>
<link>https://privacyfirst.ai/insights</link>
<description>Evidence-led analysis of AI security, privacy, governance, evaluation, and operations.</description>
<atom:link href="https://privacyfirst.ai/insights/rss.xml" rel="self" type="application/rss+xml"/>
<item>
<title>The evaluator is part of the security boundary</title>
<link>https://privacyfirst.ai/insights/the-evaluator-is-part-of-the-security-boundary</link>
<guid isPermaLink="true">https://privacyfirst.ai/insights/the-evaluator-is-part-of-the-security-boundary</guid>
<description>Recent cyber-evaluation incidents show why model providers and testing partners need one shared contract for scope, access, monitoring, and stopping a run.</description>
<pubDate>Wed, 05 Aug 2026 12:00:00 GMT</pubDate>
<category>Agents</category>
<category>Security</category>
<category>Evaluation</category>
<category>Operations</category>
</item>
<item>
<title>The AI Act enters its operating phase</title>
<link>https://privacyfirst.ai/insights/the-ai-act-enters-its-operating-phase</link>
<guid isPermaLink="true">https://privacyfirst.ai/insights/the-ai-act-enters-its-operating-phase</guid>
<description>August 2 shifts the practical question from when rules arrive to how teams keep roles, evidence, and decisions current.</description>
<pubDate>Tue, 04 Aug 2026 12:00:00 GMT</pubDate>
<category>Governance</category>
<category>Evaluation</category>
<category>Operations</category>
</item>
<item>
<title>A narrow objective, broad authority: the control lesson from Hugging Face</title>
<link>https://privacyfirst.ai/insights/a-narrow-objective-broad-authority</link>
<guid isPermaLink="true">https://privacyfirst.ai/insights/a-narrow-objective-broad-authority</guid>
<description>The incident is a reminder that an agent&apos;s effective authority is defined by credentials, network paths, tools, and containment—not by its stated task.</description>
<pubDate>Sun, 02 Aug 2026 12:00:00 GMT</pubDate>
<category>Agents</category>
<category>Security</category>
<category>Operations</category>
</item>
<item>
<title>Introducing PrivacyFirst Insights</title>
<link>https://privacyfirst.ai/insights/introducing-privacyfirst-insights</link>
<guid isPermaLink="true">https://privacyfirst.ai/insights/introducing-privacyfirst-insights</guid>
<description>Making AI security clearer, more practical, and more human.</description>
<pubDate>Sun, 02 Aug 2026 12:00:00 GMT</pubDate>
<category>Security</category>
<category>Governance</category>
</item>
<item>
<title>Prompt injection is an impact problem, not just an input problem</title>
<link>https://privacyfirst.ai/insights/prompt-injection-constrain-the-impact</link>
<guid isPermaLink="true">https://privacyfirst.ai/insights/prompt-injection-constrain-the-impact</guid>
<description>Detection matters, but the durable design question is what an agent can expose or change when a malicious instruction gets through.</description>
<pubDate>Sun, 02 Aug 2026 12:00:00 GMT</pubDate>
<category>Security</category>
<category>Agents</category>
</item>
</channel>
</rss>
