Jump to content
Main menu
Main menu
move to sidebar
hide
Navigation
Main page
Recent changes
Random page
Help about MediaWiki
wikibase
Search
Search
English
Create account
Log in
Personal tools
Create account
Log in
Pages for logged out editors
learn more
Contributions
Talk
Editing
Synapolis/Agent Substrate API Catalog
(section)
Page
Discussion
English
Read
Edit
Edit source
View history
Tools
Tools
move to sidebar
hide
Actions
Read
Edit
Edit source
View history
General
What links here
Related changes
Special pages
Page information
Warning:
You are not logged in. Your IP address will be publicly visible if you make any edits. If you
log in
or
create an account
, your edits will be attributed to your username, along with other benefits.
Anti-spam check. Do
not
fill this in!
== Security notes for agent substrate == * Secrets in prompts are exfiltration, not "context". Treat API keys, seed phrases, bearer tokens, SSH keys, cookies, private repo credentials, customer data and unpublished business plans as out-of-scope for third-party API calls unless the contour explicitly allows it. * BYOK aggregators reduce integration work but increase blast radius: the aggregator can see prompts and may hold provider keys, route metadata, spend history and error traces. Use direct provider APIs or self-hosted gateway for sensitive work. * Browser/search tools are prompt-injection surfaces. A web page can instruct the model to reveal memory, call tools, change code, or ignore policy. Search/extract output must be treated as untrusted data, not as system instructions. * RAG vectors are derived sensitive data. Embeddings can leak semantic content and should be partitioned by sensitivity, model, tenant and deletion policy. * Low-policy/open-weight does not remove law, copyright, privacy, export-control or platform abuse obligations. It only shifts enforcement from provider to Synapolis. * For high-security agents: prefer local/self-hosted inference, no prompt logging, encrypted volumes, network egress allowlists, per-agent virtual keys, spend limits, and separate browser/search sandbox from credentialed tools.
Summary:
Please note that all contributions to wikibase may be edited, altered, or removed by other contributors. If you do not want your writing to be edited mercilessly, then do not submit it here.
You are also promising us that you wrote this yourself, or copied it from a public domain or similar free resource (see
Wikibase:Copyrights
for details).
Do not submit copyrighted work without permission!
Cancel
Editing help
(opens in new window)
Toggle limited content width