CIAAN: Confidentiality, Integrity, Availability, Authenticity, Non-repudiation—standard information security pillars applied here to agentic assets.
Agentic Systems: Systems capable of autonomous planning, tool use, environmental interaction, and multi-step task execution.
Orchestrator: The component that mediates between the agent's intentions and executable actions (e.g., parsing output into API calls).
Red Teaming: The practice of rigorously challenging plans, policies, or systems by adopting an adversarial approach (simulating attacks).
OTel: OpenTelemetry—an observability framework used here to capture detailed JSON traces of agent execution spans.
Prompt Injection: An attack where adversarial inputs override the model's original instructions to force unintended behaviors.
CVSS: Common Vulnerability Scoring System—an industry standard for assessing software vulnerabilities, deemed insufficient here for agentic user harms.