Architecture Is The Control Lands On Leanpub
Codrut Andrei’s new field manual applies product-security and Secure SDLC principles to AI systems, covering RAG, agents, MCP, supply-chain risk, evaluations, runtime controls, and governance. The book is free with a suggested $29.99 price, and author earnings support humanitarian and environmental causes.
This is a useful corrective to AI security discourse that overfocuses on prompts while underweighting permissions, architecture, and operational accountability.
- –Treats AI security as a system problem spanning models, data, identities, tools, infrastructure, and execution paths
- –Connects prompt injection, retrieval authorization, agent autonomy, and MCP capabilities to concrete release gates and runtime controls
- –Extends established Product Security and Secure SDLC practices instead of presenting AI security as an entirely separate discipline
- –Particularly relevant for teams moving AI features from prototypes into production environments with real access and decision-making authority
DISCOVERED
55m ago
2026-10-06
PUBLISHED
1h ago
2026-10-06
RELEVANCE
AUTHOR
leanpub