▶ Watch ↗20:43
The Lethal Trifecta Is Already on Your Laptops — Michael Patterson, Coder
Read the full talk →Key ideas
Scroll to read ↓Michael Patterson explains how private data, untrusted content and internet access combine inside coding agents—and how remote environments, model proxies and command controls can limit what a compromised agent can do.
- The lethal trifecta connects private-data access, untrusted content and external communication. Prompt injection becomes consequential when malicious guidance can direct tools with real permissions.5:06 ↗
- A prepared remote environment limits which resources the agent can reach and reduces dependency-installation decisions before development begins.15:35 ↗
- Model proxies govern requests to providers; agent firewalls govern execution. Logging supports oversight, while prevention requires controls that act before data leaves or a command runs.18:05 ↗
- An enterprise rollout needs approved workflows, repeatable environments and useful alerts. Blocking adoption without addressing demand can push agent use onto personal subscriptions outside organizational visibility.10:35 ↗
- Take time to understand the infrastructure and make agent activity visible before scaling its access and autonomy.19:35 ↗