Realtime AI News
Nvidia outlines AI agent security framework with OpenShell
Nvidia has outlined a security framework for AI agents and highlighted OpenShell, its open-source runtime for enforcing controls outside the agent's reasoning. The framework argues security depends on the full agent stack rather than the model alone, applying identity, access control and verifiable safeguards to systems that reason, use tools and adapt their actions.

Nvidia has outlined a security framework for AI agents and highlighted OpenShell as a runtime for enforcing controls. Its approach centres on enforceable boundaries, accountable owners and evidence that protections work.
The framework sets out how organizations should secure AI systems that can reason, use tools and adapt their actions based on the data they encounter. It argues that the same core responsibilities used in internet and cloud security still apply, including identity management, access control, limiting exposure and verifying that safeguards are effective.
Rather than treating AI security as a separate discipline, Nvidia presents it as an engineering task that requires defined requirements, clear ownership and testing.
A central point in the framework is that security depends on the full agent stack, not just the model. Nvidia describes that stack as including models, harnesses that organize context and workflows, and the runtime environments where actions are executed, with each layer carrying its own security responsibilities.
One example in the framework involves an AI agent updating a customer record after encountering malicious instructions in an attached document. In that scenario, a network policy should block any attempt to export customer data to an unauthorized destination, while protected logs should record the attempted tool call, the authorization decision and the outcome.
Nvidia also argues that permission to update a customer record should not automatically allow an agent to export the same data elsewhere. If an agent needs extra access, it can request it, but it should not be able to grant that access to itself.
Security boundaries must remain effective even when an agent makes the wrong decision, which makes the runtime environment critical, since it should impose limits on files, network destinations and processes independently of the agent's reasoning. OpenShell is presented as Nvidia's open-source runtime for that purpose, providing sandboxed execution and enforcing policy controls outside the agent's reach while governing access to data, networks and system resources.
In the wider ecosystem, Open Secure AI Alliance partners are building on OpenShell, with Cisco's DefenceClaw adding a governance layer and JFrog integrating scanning and verification of agent skills.
As businesses pursue AI-driven productivity gains while governance and security practices are still taking shape, the framework's aim is to secure agents from testing through deployment. What to watch next: OpenShell's adoption, the maturity of alliance integrations, and whether such runtime controls become an industry norm.
Why it matters
Grounding security in the runtime and the full agent stack gives enterprises an actionable engineering framework for deploying agents that take actions, and could push runtime controls toward an industry norm.
Nearby Updates
All10/07, 00:00
OpenAI and Atlassian expand partnership to connect frontier models with enterprise knowledge
OpenAI and Atlassian are expanding their partnership to connect frontier models with enterprise knowledge so teams can plan, build, and deliver work. The official announcement points to models reasoning with an organization's own context rather than serving as a generic assistant.
10/07, 00:00
Anthropic is giving startups a free year of Claude Team and $1,000 in credits
Anthropic announced an expansion of its Claude for Startups program, offering qualifying companies a free year of Claude Team with up to five premium seats plus $1,000 in API credits. Selected firms also get access to Claude Marketplace for building plugins and can book virtual office hours with Anthropic's Applied AI team.
10/06, 23:55
China's DeepSeek, peers launch 16 AI models in a month despite Anthropic warning
China's DeepSeek and its peers launched 16 AI models within a single month, according to Nikkei Asia, a pace the report frames as continuing despite a warning from Anthropic. The density of releases underscores a high-frequency contest among Chinese developers and keeps friction over model safety and usage boundaries in focus.
10/06, 23:25
LibreOffice Says 'No AI' Is Now a Software Feature
The maker of the open-source LibreOffice document editor says it has no plans to add AI to the software's default configuration, citing user privacy. The stance turns the absence of AI into a deliberate selling point at a time when rival productivity suites are racing to embed assistants.