Keyboard shortcuts

Press ← or → to navigate between chapters

Press S or / to search in the book

Press ? to show this help

Press Esc to hide this help

Identity and ownership

Who may act, and on what?

The first three lessons establish the actors and what each one owns, before any money appears.

#LessonYou will attack
1Humans and agentsan agent trying to make itself an approver
2Ash policies and ownershipan agent writing customers; reassigning ownership
3Tenant isolationproposing with another agent's customer

Humans and agents are different Ash resources, not one user table with a role column. An agent authenticates with an API key and can never hold the approver role. Ownership is per agent, and an unknown id returns the same error as someone else's id, so ownership cannot be probed.

Compare with Part IV, where the wallet owner is likewise the presented API key and never a tool argument (C6 · Bind identity to capability).