<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Runtime-Governance on CuraSec</title><link>https://curasec.metacog.co.kr/tags/runtime-governance/</link><description>Recent content in Runtime-Governance on CuraSec</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Mon, 14 Sep 2026 18:03:45 +0000</lastBuildDate><atom:link href="https://curasec.metacog.co.kr/tags/runtime-governance/index.xml" rel="self" type="application/rss+xml"/><item><title>Research: AI Agent Skill Registries Miss Runtime Permission Gaps</title><link>https://curasec.metacog.co.kr/insights/2026-09-14-scan-the-skill-govern-the-action-composing-registry-verdicts/</link><pubDate>Mon, 14 Sep 2026 18:03:45 +0000</pubDate><guid>https://curasec.metacog.co.kr/insights/2026-09-14-scan-the-skill-govern-the-action-composing-registry-verdicts/</guid><description>&lt;ul>
&lt;li>&lt;strong>Engineer — Learn:&lt;/strong> Academic research finding that skill scanners answer &amp;lsquo;is this malicious?&amp;rsquo; but not &amp;lsquo;is this action permitted right now?&amp;rsquo; — 34.7% of sandbox-executed commands carried consequences absent from documentation. Worth reviewing if your team is building or consuming agent skill registries, but no patch or config action today.&lt;/li>
&lt;li>&lt;strong>SOC/IR — Learn:&lt;/strong> No IOCs or ATT&amp;amp;CK-mapped TTPs, but the finding that 34.7% of agent-executed commands have undocumented consequence classes could inform future monitoring strategy for AI agent activity logging in your environment.&lt;/li>
&lt;li>&lt;strong>Leader — Learn:&lt;/strong> Reproducible measurement shows skills passing all scanners can still violate CIS Control 2.7 and NIST CM-11 — a governance gap relevant to AI agent policy discussions, but no vendor breach or regulatory deadline demands action this week.&lt;/li>
&lt;/ul></description></item></channel></rss>