A transparent secure ledger collects agent activity traces from protected workspaces
A transparent secure ledger collects agent activity traces from protected workspaces
+ NVIDIA AI News

Open Secure AI Alliance proposes SAFE guidelines for agent security findings

The Open Secure AI Alliance proposed SAFE guidelines for sharing agentic AI cybersecurity findings as Black Hat USA opened.

Members of the Open Secure AI Alliance have proposed SAFE, short for Shared AI Findings Exchange, as a set of guidelines for sharing agentic AI cybersecurity findings.

NVIDIA published the update on August 4 as the Black Hat conference opened in Las Vegas. The post says the Linux Foundation shared a request for comments on SAFE, with contributions from organizations including NVIDIA, Cisco, CrowdStrike, Hugging Face, and Red Hat.

The practical point is process. Agentic AI incidents can touch model providers, infrastructure platforms, tool vendors, customers, and downstream services at once. A shared disclosure pattern can help those parties separate confidential intake, technical analysis, affected-party notification, and broader operating guidance.

Agent security needs a common evidence format

The recent Hugging Face and OpenAI evaluation incident showed why ad hoc statements are not enough. When an AI agent probes systems, chains tool actions, or crosses a boundary during testing, responders need more than a public summary.

They need traces: what model or system ran, which tools were enabled, what environment was used, what actions occurred, what systems were touched, how the run was stopped, and what mitigations followed. The sensitive parts may need to stay private, but the structure has to be clear enough for others to learn from the event.

SAFE is still a proposal, not a binding security standard. That distinction matters. The request-for-comments stage is the right place to decide what can be shared publicly, what should remain confidential, how coordinated disclosure should work, and how to avoid turning incident reports into misuse instructions.

Open tools are becoming defensive infrastructure

NVIDIA’s earlier Open Secure AI Alliance announcement framed open models, harnesses, datasets, and safety tools as security infrastructure. The August 4 update extends that idea from tools to governance mechanics.

That is important because open defensive tooling and responsible disclosure are complementary. Tools help teams reproduce and evaluate agent behavior. Disclosure guidelines help them decide how to communicate findings without exposing customers or enabling copycat attacks.

The market consequence is straightforward: enterprise agent buyers will increasingly ask vendors how agent incidents are logged, retained, analyzed, shared, and disclosed.

Sources

The AI Feed Desk

The AI Feed Desk

Editorial desk

The AI Feed Desk tracks AI provider updates, model releases, agent tooling, and enterprise adoption, turning fast-moving announcements into source-linked context for builders and operators.

Noticed a typo, incorrect information, or translation error?

Tell us so we can fix it.

Help Improve This Article

Related Articles

Open model weights and cybersecurity tools sit between two policy paths labeled access, testing, chips, and safeguards

NVIDIA and Anthropic split over open-weight AI safety

NVIDIA launched the Open Secure AI Alliance while Anthropic argued against blanket open-weight bans and for targeted AI safety controls.

The AI Feed Desk

By The AI Feed Desk

An open dataset map clusters agent workflow samples beside transparent synthetic persona cards

NVIDIA and Hugging Face publish open data for agents

NVIDIA and Hugging Face published a Nemotron data package for agents, including open pretraining data, post-training samples, an interactive Prompt Atlas, and synthetic persona datasets.

The AI Feed Desk

By The AI Feed Desk

A governed cloud workspace connects an AI model core to a high-performance compute rack

Claude reaches Microsoft Foundry with Azure governance and GB300 compute

Anthropic made Claude generally available in Microsoft Foundry, while NVIDIA framed the Azure deployment as a GB300 Blackwell Ultra agent platform.

The AI Feed Desk

By The AI Feed Desk

An AI server rack connects to a warm closed-loop liquid cooling system and dry cooler

NVIDIA says 45 C liquid cooling can reshape AI factory design

NVIDIA says Rubin-generation AI infrastructure can run with 45 C coolant in closed-loop liquid-cooled AI factories, reducing cooling energy and water dependence.

The AI Feed Desk

By The AI Feed Desk

A large AI factory rack sends green revenue tokens toward a smaller cloud node

NVIDIA turns AI cloud capacity into a revenue-sharing model

NVIDIA's new AI cloud model pairs revenue sharing with credit support, giving emerging cloud providers a way to finance AI factories while tying NVIDIA to downstream token demand.

The AI Feed Desk

By The AI Feed Desk