The operating question.
A finance operating view of AI agent security: tool permissions, API inventory, prompt injection, data exposure, runtime traces, and governance evidence.
Guidethe question, evidence, artifact, and action to sequence
Evidencethe source-linked facts needed for a defensible read
Next movehow the guidance connects back to the AI Audit
How to use this.
Use this as an operating artifact: connect every claim to a source, name the accountable owner, make the review boundary explicit, and turn the conclusion into a workstream a team can defend.