Blog

Insights on agentic security, credential delegation, and building AI systems that humans can trust.

SecurityFeb 17, 2026·12 min read

We Love OpenClaw — Let's Make It Even More Secure Together

OpenClaw has seen tremendous success — and we love how it unleashes the real power of AI agents. Here's how Keychains.dev helps the community keep credentials safe with a simple two-step setup.

Read article
SecurityFeb 10, 2026·7 min read

How AI Code Assistants Leak Your Secrets

Researchers extracted 2,702 hard-coded credentials from GitHub Copilot using crafted prompts. The implications for AI agents go far beyond code completion.

Read article
SecurityFeb 7, 2026·8 min read

The MCP Server Credential Crisis: Why Half of Agent Servers Are Insecure

48% of MCP servers implement insecure credential storage. OWASP ranks token mismanagement as the #1 MCP vulnerability. The agentic infrastructure has a fundamental security problem.

Read article
ArchitectureFeb 6, 2026·6 min read

Why Your AI Agent Shouldn't Know Your Passwords

The fundamental problem with how agents handle credentials today, and why the solution isn't better vaults — it's removing credentials from the agent entirely.

Read article
SecurityFeb 3, 2026·6 min read

LangChain Vulnerabilities: When Your Agent Framework Leaks Your API Keys

Two critical CVEs in LangChain enabled API key disclosure and environment variable extraction through prompt injection. Both share the same root cause.

Read article
OpinionFeb 1, 2026·10 min read

The Agentic Web Has a Trust Crisis

As AI agents proliferate, we're building a web of autonomous actors with no accountability framework. The consequences are already showing.

Read article