Discussion about this post

User's avatar
Neural Foundry's avatar

The point about treating PII as "cheap, disposable metadata" for dashboards really resonates. I've sen too many companies ship org IDs and user emails to analytics platforms without even thinking about it. The irony of OpenAI getting burned by basic cloud security at a third-party vendor is pretty stark. Curious if you think the MFA mandate goes far enough though, or if we also need hardware keys for high-value API accounts?

Expand full comment

No posts

Ready for more?