The Agent Access Problem
Right now, an agent on your team has the keys to everything
When a developer on your team uses Claude Code, the agent is running as them — with their SSH key, their GitHub token, their AWS credentials, their database password. There is no identity for the agent. There is no audit trail of which tools it called. There is no policy between the agent's decision to act and the action landing on production.
This is not a theoretical concern. It is the default configuration of every MCP-enabled coding assistant shipping today.