What Least Privilege for AI Agents (CIS Companion Guide) requires
Autonomous AI agents must be managed as Non-Human Identities (NHIs) with task-scoped, ephemeral privileges. The principle of Least Privilege ensures that an agent's access is restricted to the specific data and tools required for its current atomic task.
Pillar: Cybersecurity · Authority: CIS (Center for Internet Security) · Version: 1.1.0 · Last updated:
Primary source: https://www.cisecurity.org/insights/white-papers/controls-v8-1-ai-agents-companion-guide
SHA-256 integrity: a7850dbe66a36ea9fbfa8c3a341cbd12e4c4f519ced4e2aec9bdae621e0b13cd
Primary Citations — 6 traced to source
- Article 32: Security of processing — Article 32: Security of processing
- Control AC-6: Least Privilege — Control AC-6: Least Privilege
+ 4 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
- Discovery (free): /api/v1/nodes/cis-ai-least-privilege.json — 6-field metadata
- Vault (full node): /api/v1/vault/nodes/cis-ai-least-privilege.json — full 13-key payload, $0.01 USDC (L402/Skyfire/Direct Base)
- Canonical URL: https://bidda.com/intelligence/cis-ai-least-privilege
- Back to registry: Browse all 10,108 compliance nodes