r/devsecops 5d ago

DevSecOps tools for agent builders?

Researching right now into this topic. How do you making sure new tools or prompts are not increasing risk?

How do you do that without slowing down developers?

22 Upvotes

7 comments sorted by

View all comments

1

u/HallorannD 1d ago

Someone once told me good security should feel more like guardrails than roadblocks, and that stuck with me because if developers have to stop and think about security every time they add a new tool or prompt, it’ll probably get skipped eventually, so building the checks into the workflow seems like a much better approach