6 min read
My Claude Guardrails
Claude Code can access our internal systems. Here are the guardrails: the policies that decide what my AI agent can actually reach, all published in our policy catalog.

6 min read
Claude Code can access our internal systems. Here are the guardrails: the policies that decide what my AI agent can actually reach, all published in our policy catalog.

3 min read
CarNow consolidated access into a single Dtwo gateway to drive AI adoption and measurable productivity gains across its engineering team.

Connecting Claude to Microsoft 365, SafelySecurity teams keep saying no when users ask to connect Claude to email. The problem isn't access, it's granularity. Here's what a yes can look like.
My Claude GuardrailsClaude Code can access our internal systems. Here are the guardrails: the policies that decide what my AI agent can actually reach, all published in our policy catalog.
Code got cheap. Architecture got iterative.Cheap implementation moved the work upstream. Every architectural decision is now recorded in the same repo as code. It becomes the context for everything built after it, and gets revised when we turn out to be wrong.
How CarNow Drove AI Adoption and Developer Productivity with DtwoCarNow consolidated access into a single Dtwo gateway to drive AI adoption and measurable productivity gains across its engineering team.
Good policy is the hard part. So we're sharing ours.The risk from AI agents isn't any one system — it's the path between them. Policy guards that path. It's hard to write — so we open-sourced a library of policies.
Audit kept us honest. Agents don't care.Audit worked because people feared getting caught. AI agents don't — so agent security must shift from audit to authorization across every system.
Securing Claude CoworkA practical guide to rolling out Claude Cowork safely: restrict risky access paths, route MCP through a policy layer, and monitor what your agents actually do.
Agentic AI security: why legacy controls fail AI agentsLegacy security controls were built for humans, not AI agents — that's why agentic AI security and governance are breaking. Here's the gap, and how to close it.
Intent-Based Policies for AIThe policy model that closes the gap between what organizations mean and what their controls enforce.