Meta details Muse agent safety architecture and opens its bug bounty to everyone
Meta AI
Meta's research blog laid out how its Muse personal agent is sandboxed: an isolated runtime cell, a permission system called Sentinel, credential surrogation so the agent never sees real secrets, and human-in-the-loop approvals. Meta also opened its bug bounty program to the public with awards up to $300,000, including $130,000 for prompt-injection escapes, and previewed a Muse Confidential VM designed to keep user data unreadable even to Meta.
Why it matters
The clearest public spec yet of how a consumer agent vendor isolates credentials and pays for prompt-injection findings.
Importance: 2/5
Notable security post: clearest public agent-isolation spec plus public bug bounty