Hosts David Spark and Steve Zalewski discuss the security risks of granting AI agents broad OAuth access to dormant data in cloud workspaces. Guest Rajan Kapoor from Material Security argues that legacy authorization models are insufficient, advocating for data-layer controls, classification, and retention policies. The episode explores using AI to identify sensitive data and minimize exposure before agents access it.
Listen ad-free on Castria