↳ Resources

Documentation, Guides,
and Research.

In development

Documentation

Full integration guides, CLI reference, and API documentation will be published when KYDE reaches public availability.

↳ Blog & Insights

Regulatory analysis, technical deep-dives, and operational guidance for enterprises deploying AI agents at scale.

Security · 5 min read

Your Employees Are Already Using AI. You Just Don't Know How.

78% of AI users bring their own tools to work. Your employees are not waiting for your AI strategy. They already have one — and the data they're processing with it isn't yours to govern yet.

Technical · Strategic · 6 min read

The End of the App Layer: Why MCP Changes Everything About AI Governance

MCP lets AI agents connect directly to enterprise systems — bypassing the application layer that was always the implicit governance control point. The app layer doesn't get rebuilt. It gets bypassed. Something needs to replace the control point it represented.

Security · 5 min read

What Happens When an AI Agent Gets Compromised — And Nobody Has the Logs

ForcedLeak demonstrated prompt injection against production enterprise agents in 2025. The most important question it raises isn't technical — it's operational. If this happened in your environment, would you know?

Security · 5 min read

Shadow AI Is Already in Your Production Systems — You Just Can't See It

Shadow AI is the same problem as Shadow IT — at a different order of magnitude. Every LLM call that touches enterprise data without logging, attribution, or scope is a liability accumulating in silence.

Technical · 5 min read

The Missing Layer in Every Agent Architecture

The distinction between agent core and agent harness cuts to the heart of what most enterprise deployments get wrong. Single-user architecture breaks at scale in four predictable ways. The harness isn't an add-on — for enterprise, it's the product.

Thought Leadership · 5 min read

HBR Just Described the Problem. Here's the Infrastructure That Solves It.

Harvard Business Review identified four frictions that derail enterprise AI agent deployments: identity, context, control, and accountability. The article stops short of specifying what the infrastructure layer looks like. That's what we build.

Regulatory · 4 min read

DORA and AI Agents: Why Your LLM Provider's Log Doesn't Satisfy Article 30

DORA is already in force. Financial entities using AI agents for operational functions have a specific problem: vendor-provided logs don't constitute an independent audit trail. Here's why — and what does.

Regulatory · 5 min read

What the EU AI Act Actually Requires for Audit Trails — And What Most Enterprises Are Missing

The enforcement deadline is August 2, 2027. Most enterprises assume their LLM provider's logs will be sufficient. They won't be. Here's what the regulation actually demands — and where the gaps are.

Technical Why Software Logs Are Not Tamper-Evident — And Why It Matters for AI Agents Coming Soon
Technical MCP Servers and Governance: Every Tool Call Is an Audit Event Coming Soon
Technical The Case Against Provider-Native AI Governance Coming Soon
Thought Leadership Your AI Agents Are Your Workforce. Courts Already Agree. Coming Soon
Thought Leadership From Deploy-and-Hope to Govern-by-Design Coming Soon
↳ Regulatory Context

The frameworks KYDE is designed to address.

EU AI Act

Risk-based framework for AI systems. High-Risk AI System logging requirements.

Urgent

Enforcement: August 2, 2027

NIS-2 Directive

Network and Information Security for essential and important entities.

In force: December 2025

DORA

Digital Operational Resilience Act for financial sector entities.

In force: January 2025

GDPR

Art. 22 covers automated decision-making. Art. 35 requires DPIA for high-risk processing.

In force

↳ Questions?

Questions before the docs arrive?

We respond to every message.

hello@kyde.com →