Appendix A. Implementation Considerations
This appendix provides more detail on how to get started with implementing key security controls. References to commercial products and services are provided for informational purposes only and do not imply an endorsement of those products or services.
- Access Controls
- Sandboxing
- Limiting Execution Depth and Incorporating Human Oversight
- Requiring Strong Authentication, Signed Data Exchange, and Integrity Checks Between Model, Retriever, and Tools
- Memory Management, Delete When Able, Encrypt or Purge Stored Prompts and Results
- Data Provenance
- Recording Agent and Model Activity, Tool Invocation, and Prompt Chains and Analyzing for Dual-Use Patterns
- Supply Chain Security
- Confidential Computing, Secure Enclaves, and Attestation
- AI-Assisted Red-Teaming
- Misuse-Resilience Testing