Least privilege
Granting the narrowest access that makes the job possible, and nothing beyond it.
Applied to agent tooling it means read-only where the job is reading, one prefix rather than a whole bucket, a fixed command set rather than an open one, and a key issued for this purpose rather than a personal token.
It is not a security posture so much as a way of limiting how expensive a mistake can be, and mistakes in this category are made by software choosing its own steps.
It is the only defence that works against an attack nobody has thought of yet.
Granting broad access to get something working and intending to narrow it later. Nobody narrows it later.
Related terms
See Least privilege on a real listing
Every term here shows up in the catalogue next to a real result, with the findings published and the limits stated. Free to browse, no account needed.
Open the catalogue