Agent runtime integrity and workload identity
I maintain Awesome Agent Runtime Security, a Linux-focused curation of long-form writing, specifications, and technologies at varying levels of maturity. It collects approaches to kernel- and hypervisor-enforced agent isolation, secrets injection, and deriving credentials from an agent’s measured state.
Related writing and resources: