least-privilege access
AssessTechniques
Security principle of granting only the minimum permissions required.
Why it's here
Placed in Assess: 2 article(s) of evidence from 2 source(s), led by model releases, with 2 in the last 30 days. Confidence 37%.
Evidence (2)
- 6InfoQ·8/10/2026securityPinterest Details Centralized Terraform Pipeline for AWS Guardrails
Pinterest has described its Resource Provisioner Pipeline (RPP), an internal Terraform execution engine used to manage AWS infrastructure with tighter controls. The system enforces least-privilege access, requires dual-control reviews, and adds guardrails to GitHub Actions-based workflows.
- 6Cloudflare Blog·8/5/2026model_releaseCloudflare Proposes the Agent Access Model for AI Agents
Cloudflare’s blog introduces the Agent Access Model (AAM), a proposed access-control framework for software agents that operate on behalf of users. It argues that human-centric Zero Trust controls do not translate well to ephemeral, machine-speed agents and that agent permissions should be smaller, time-bound, and tightly scoped to each task.