ABOUT THIS EPISODE
An agent asked to build a service found an Argo CD repository and deployed it to a cluster. Helpful automation gets harder to trust when a request leaves room for actions nobody intended.
Mattias Hemmingsson and Paulina Dubas discuss AI-assisted compliance checks, unexpected deployments, evolving guardrails, company AI bans and whether regulation improves transparency or prices smaller competitors out.
What you will learn
- How Claude turned AWS database checks into reusable audit evidence
- How an agent found a deployment path through Argo CD
- Why vague instructions and guardrail edge cases cause unwanted actions
- Why approving a hosted assistant does not make it local
- Where the hosts see benefits and competitive risks in regulation
Full article and show notes: https://devsecops.fm/episodes/111/
English
United States
TRANSCRIPT 🔗
Are you the producer of this podcast?
Add a podcast transcript
Need Audio-to-Text?
Transcribe with Listen411 in Just 60 Seconds
SEARCH PAST EPISODES
Search past episodes of The DevSecOps Talks Podcast.
OTHER EPISODES IN THIS PODCAST
What changed in Docker while everyone was watching AI? The hosts review BuildKit, Buildx, security features, provenance, and the updates practitioners should know.
We are always happy to answer any questions, hear suggestions for new episodes, or hear from you, our listeners.
DevSecOps Talks pod…
What changed between episode 1 and episode 100, and what stayed surprisingly constant? The hosts revisit infrastructure as code, observability, incident response, secrets, compliance, and supply chain security through the lens of six years of conversations. It is part retrospective, part editorial …
Mark Shine, Pawel Piwosz, and Filipe Berti discuss why the default choice of AWS, Azure, or GCP is no longer automatic for every team. The conversation covers cost, managed services, open source, AI workloads, and what European cloud providers can offer instead.
We are always happy to answer any …
What happens when AI can turn patches into exploits in hours? The hosts discuss why the 90-day disclosure window is breaking, what Mythos Preview changes, and why shipping vulnerable code is becoming more expensive.
We are always happy to answer any questions, hear suggestions for new episodes, o…
Six years after the podcast first covered infrastructure as code, what still holds up and what does not? The hosts revisit IaC through a 2026 lens: platform teams shipping secure-by-default modules, stacks becoming standard, GitOps making more sense for Kubernetes, and AI raising new questions inst…
Disclaimer: The podcast and artwork embedded on this page are from Mattias Hemmingsson, Julien Bisconti and Andrey Devyatkin, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
EDIT
Thank you for helping to keep the podcast database up to date.