Discussion about this post

User's avatar
Sunil Sandhu's avatar

I truly hope GitLost ends up being the wake-up call. We keep conflating platform security with actual agent security. Telemetry, ephemeral credentials, cost caps...these are all operational fixes. GitLost was an *architectural* problem - GitHub's agent treating untrusted issue content as instructions. Agent engineering matters just as much these days as model capability. I dug a little further into this myself: https://ipenewsletter.substack.com/i/206726718/gitlost-how-a-public-github-issue-can-leak-your-private-repos

No posts

Ready for more?