2026-10-11 16:37 UTC

Nvidia claims its released Open Agent Safety Platform β€” OpenShell CPU-level capability limits plus Sentry network-chip agent monitoring, with Cisco, Microsoft, Oracle, CoreWeave, Dell, HPE, Lenovo, ARM, and Intel as partners and Anthropic integrating OpenShell for managed cloud agents β€” provides working containment for deployed AI agents in the wake of disclosed sandbox-escape incidents; partner products shipping and enterprise adoption would establish vendor-supplied runtime/hardware agent containment as a standard infrastructure layer.

state: corroboratedheat: lowuncertainty: mediumconvergesscott: highagentic-security agent-containment nvidiaNvidiaJensen HuangJustin BoitanoAnthropic
Surfaced 2026-09-28T12:30:46Z β€” NVIDIA's official announcement: "NVIDIA today announced NVIDIA Open Agent Safety Platform, an open software platform and reference system de β€” Nvidia claims its released Open Agent Safety Platform β€” OpenShell CPU-level capability limits plus Sentry network-chip agent monitoring, with Cisco, Microsoft, Oracle, CoreWeave, Dell, HPE, Lenovo, ARM, and Intel as partners and Anthropic integrating OpenShell for managed cloud agents β€” provides working containment for deployed AI agents in the wake of disclosed sandbox-escape incidents; partner products shipping and enterprise adoption would establish vendor-supplied runtime/hardware agent containment as a standard infrastructure layer.

What is this?

Nvidia's Open Agent Safety Platform, launched 2026-09-28, pairs OpenShell β€” an Apache-2.0 open-source runtime that sandboxes autonomous AI agents at the kernel level via Linux's Landlock LSM, enforcing deny-by-default declarative policies in the environment rather than in the model or app β€” with Sentry, a network-chip component for monitoring agent traffic. OpenShell itself is not new: Nvidia released it at GTC in March 2026 as part of its Agent Toolkit with security partners Cisco, CrowdStrike, Google Cloud, Microsoft Security and TrendAI, and the supplied web results show it has since been embedded into SAP's Business AI Platform, with one third-party blog headline claiming it now sits in '17 enterprise stacks' β€” the same adoption figure the case had flagged unconfirmed β€” though that source hedges the claim and nothing primary here verifies it. Notably, none of the supplied snippets covers the September announcement's new elements β€” Sentry mechanics, the expanded OEM/hyperscaler partner roster (Oracle, CoreWeave, Dell, HPE, Lenovo, ARM, Intel), or Anthropic's OpenShell integration β€” which rest on the case's own multi-outlet press record rather than on these results. The efficacy picture on file remains split: the only independent test (123 trials, local qwen3:8b agent) found the default-deny controls held while auto-approval configuration bypassed them 12/12, and whether partner products ship and adoption follows is still the open half of the hypothesis.

Why it matters to Scott

A consequential other party has industrialized the position Scott's canon already holds: OpenShell is the SiloOS/padded-cell pattern β€” kernel-level, deny-by-default, environment-side enforcement the agent cannot itself override β€” now shipped at platform scale with Anthropic announcing integration for managed cloud agents, a dated-receipts moment for his architectural-containment argument. The case also cuts live ways into his pages: the independent test's auto-approval bypass (12/12) is a fresh guardrail-illusion receipt about which rung enforcement actually sits on, and Sentry markets the monitoring rung of his trust hierarchy as containment while HN's restricted-permissions challenge β€” his containment-vs-monitoring distinction β€” remains unanswered anywhere.
ip:source.siloosip:framework.siloosdev:project.silo-osip:concept.runtime-containmentip:concept.architectural-containmentip:concept.trust-hierarchyip:concept.guardrail-illusiondev:concept.padded-cell-agent-architecturedev:project.askradar:concept.agent-containmentradar:concept.agent-sandboxingradar:aegis-inline-ebpf-agent-containmentradar:aide-declarative-agent-sandboxradar:grith-syscall-agent-supervisionradar:anthropic-agent-monitor-block-ratesradar:ncsc-agentic-ai-security-controls
queries asked of Scott's wikis
  • SiloOS architectural containment environment-side enforcement
  • guardrail illusion trust hierarchy auto-approval bypass
  • runtime containment versus monitoring agent safety
  • Landlock kernel sandbox deny-by-default capability limits
  • agent control plane vendor lock-in infrastructure standard
  • restricted-permission accounts harness guardrails coding agents

Measured heat

now 0 pts/hpeak 125 pts/hcomments 0/hpeers p14momentum: steady3 platformsage 338h
points/hour across evidence Β· reading as of 2026-10-12 02:59:37.977291+11:00 Β· deterministic, not a model opinion

How the heat travelled

09-27 14:00⭐ origin echo-reconstructedNVIDIA's official announcement: "NVIDIA today announced NVIDIA Open Agent Safety Platform, an open software platform and reference system de
NVIDIA (corporate press release, NVIDIA Newsroom / Corporate Communications) on blog (echo) Β· attributed from reddit.post.1wsb15k, hn.story.49876019
β€”
09-28 10:32first on r/ClaudeAI Β· published Β· +20.5hNvidia wants to put a watchdog chip next to every AI agent including Claude, and Anthropic and SpaceXAI are on board
ross2000
β€”
09-28 10:45first on hacker news Β· published Β· +20.8hNvidia releases software platform to stop AI agents from misbehaving
pseudolus
β€”
09-28 12:59first on r/artificial Β· published Β· +23.0hNvidia launches new tool to keep AI agents from going rogue
cnn
β€”
09-29 09:32first on r/OpenAI Β· published Β· +43.5hWe tested NVIDIA OpenShell with a local qwen3:8b agent: a malicious setup script leaked a secret 10/10 without it, 0/10 with it. But auto-approval opened new hosts in 12/12 trials
No-Peanut-6988
β€”
09-28 10:32amplified on r/ClaudeAIreddit.post.1wsb15k
ross2000
peak 442 Β· 107 comments Β· 32% of case engagement
09-28 10:45amplified on hacker newshn.story.49876019
pseudolus
peak 2 Β· 0 comments Β· 0% of case engagement
09-28 12:59amplified on r/artificialreddit.post.1wsdyez
cnn
peak 87 Β· 44 comments Β· 8% of case engagement
09-28 14:54amplified on hacker newshn.story.49879006
ketanbj
peak 3 Β· 1 comments Β· 0% of case engagement
09-28 15:46amplified on hacker news πŸ‘‘hn.story.49879883
jonbaer
peak 230 Β· 299 comments Β· 56% of case engagement
09-28 18:01amplified on hacker newshn.story.49881899
jethronethro
peak 5 Β· 1 comments Β· 1% of case engagement
11 more amplifiers in ainews.case_chain
09-28 11:20our radar first saw it Β· +21.3hdiscovery anchor: reddit.post.1wsb15kβ€”
09-28 11:31reached heat=high Β· +21.5h Β· via ledgerβ€”β€”
pace: p92 vs 1032 stories at the 336h mark (now 338h old) β€” ahead of adaptive-kv-cache-streaming (1.0x), behind chromium-cve-2026-85046-sandbox-rce (1.0x)

Evidence (18) β€” ⭐ canonical anchor

sourceobjectauthorscorecomments
🟠 redditNvidia wants to put a watchdog chip next to every AI agent including Claude, and Anthropic and SpaceXAI are on board
ClaudeAI
ross2000442107
🟧 hnNvidia releases software platform to stop AI agents from misbehaving
Retrieved article excerpt

Open article Β· Retrieved 2026-09-28T11:28:31.988193+00:00

[Skip Navigation](https://www.cnbc.com/2026/09/28/nvidia-releases.html#MainContent)

[CNBC](https://www.cnbc.com/world/)

[Markets](https://www.cnbc.com/markets/)



- [Pre-Markets](https://www.cnbc.com/pre-markets/)
- [U.S. Markets](https://www.cnbc.com/us-markets/)
- [Europe Markets](https://www.cnbc.com/markets-europe/)
- [China Markets](https://www.cnbc.com/china-markets/)
- [Asia Markets](https://www.cnbc.com/markets-asia-pacific/)
- [World Markets](https://www.cnbc.com/world-markets/)
- [Currencies](https://www.cnbc.com/currencies/)
- [Prediction Markets](https://www.cnbc.com/prediction-markets/)
- [Cryptocurrency](https://www.cnbc.com/cryptocurrency/)
- [Futures & Commodities](https://www.cnbc.com/futures-and-commodities/)
- [Bonds](https://www.cnbc.com/bonds/)
- [Funds & ETFs](https://www.cnbc.com/funds-and-etfs/)

[Business](https://www.cnbc.com/business/)



- [Economy](https://www.cnbc.com/economy/)
- [Finance](https://www.cnbc.com/finance/)
- [Health & Science](https://www.cnbc.com/health-and-science/)
- [Media](https://www.cnbc.com/media/)
- [Real Estate](https://www.cnbc.com/real-estate/)
- [Energy](https://www.cnbc.com/energy/)
- [Climate](https://www.cnbc.com/climate/)
- [Transportation](https://www.cnbc.com/transportation/)
- [Investigations](https://www.cnbc.com/cnbc-investigations/)
- [Industrials](https://www.cnbc.com/industrials/)
- [Retail](https://www.cnbc.com/retail/)
- [Wealth](https://www.cnbc.com/wealth/)
- [Sports](https://www.cnbc.com/sports/)
- [Life](https://www.cnbc.com/life/)
- [Small Business](https://www.cnbc.com/small-business/)

[Investing](https://www.cnbc.com/investing/)



- [Personal Finance](https://www.cnbc.com/personal-finance/)
- [Fintech](https://www.cnbc.com/fintech/)
- [Financial Advisors](https://www.cnbc.com/financial-advisors/)
- [Options Action](https://www.cnbc.com/options-action/)
- [ETF Street](https://www.cnbc.com/etf-street/)
- [Buffett Archive](https://buffett.cnbc.com)
- [Earnings](https://www.cnbc.com/earnings/)
- [Trader Talk](https://www.cnbc.com/trader-talk/)

[Tech](https://www.cnbc.com/technology/)



- [Cybersecurity](https://www.cnbc.com/cybersecurity/)
- [AI](https://www.cnbc.com/ai-artificial-intelligence/)
- [Enterprise](https://www.cnbc.com/enterprise/)
- [Internet](https://www.cnbc.com/internet/)
- [Media](https://www.cnbc.com/media/)
- [Mobile](https://www.cnbc.com/mobile/)
- [Social Media](https://www.cnbc.com/social-media/)
- [CNBC Disruptor 50](https://www.cnbc.com/cnbc-disruptors/)
- [Tech Guide](https://www.cnbc.com/tech-guide/)

[Politics & Policy](https://www.cnbc.com/politics/)



- [White House](https://www.cnbc.com/white-house/)
- [Policy](https://www.cnbc.com/policy/)
- [Defense](https://www.cnbc.com/defense/)
- [Congress](https://www.cnbc.com/congress/)
- [Expanding Opportunity](https://www.cnbc.com/expanding-opportunity/)
- [Europe Politics](https://www.cnbc.com/europe-politics/)
- [China Politics](https://www.cnbc.com/china-politics/)
- [Asia Politics](https://www.cnbc.com/asia-politics/)
- [World Politics](https://www.cnbc.com/world-politics/)

[Video](https://www.cnbc.com/tv/)



- [Latest Video](https://www.cnbc.com/latest-video/)
- [Full Episodes](https://www.cnbc.com/live-tv/full-episodes/)
- [Livestream](https://www.cnbc.com/live-tv/)
- [Top Video](https://www.cnbc.com/top-video/)
- [Live Audio](https://www.cnbc.com/live-audio/)
- [Europe TV](https://www.cnbc.com/europe-television/)
- [Asia TV](https://www.cnbc.com/asia-business-day/)
- [CNBC Podcasts](https://www.cnbc.com/podcast/)
- [CEO Interviews](https://www.cnbc.com/video-ceo-interviews/)
- [Digital Originals](https://www.cnbc.com/digital-original/)

[Watchlist](https://www.cnbc.com/watchlist/)

[Investing Club](https://www.cnbc.com/investingclub/subscribe?__source=investingclub|globalnav|join&tpcc=investingclub|globalnav|join)



- [Trust Portfolio](https://www.cnbc.com/investingclub/charitable-trust/)
- [Analysis](https://www.cnbc.com/investingclub/analysis/)
- [Trade Alerts](https://www.cnbc.com/investingclub/trade-alerts/)
- [Meeting Videos](https://www.cnbc.com/investingclub/video/)
- [Homestretch](https://www.cnbc.com/investingclub/homestretch/)
- [Jim's Columns](https://www.cnbc.com/investingclub/jim-cramer-columns/)
- [Education](https://www.cnbc.com/investingclub/education/)
- [Subscribe](https://www.cnbc.com/investingclub/subscribe?__source=investingclub|dropdownnav&tpcc=investingclub|dropdownnav)

Join IC

[PRO](https://www.cnbc.com/application/pro?__source=pro|globalnav|join&tpcc=pro|globalnav|join)



- [Pro News](https://www.cnbc.com/pro/news/)
- [Josh Brown](https://www.cnbc.com/josh-brown/)
- [Mike Santoli](https://www.cnbc.com/mike-santoli-insight/)
- [Calls of the Day](https://www.cnbc.com/analyst-calls-of-the-day/)
- [My Portfolio](https://www.cnbc.com/my-portfolio/)
- [Livestream](https://www.cnbc.com/live-tv/)
- [Full Episodes](https://www.cnbc.com/live-tv/full-episodes/)
- [Stock Screener](https://www.cnbc.com/pro-stock-screener/)
- [Market Forecast](https://www.cnbc.com/2023/05/11/market-strategist-survey-forecast.html)
- [Options Investing](https://www.cnbc.com/pro/options-investing/)
- [Chart Investing](https://www.cnbc.com/cnbc-pro-chart-investing/)
- [Subscribe](https://www.cnbc.com/application/pro/?__source=pro|dropdownnav&tpcc=pro|dropdownnav)

Join Pro

[Livestream](https://www.cnbc.com/live-tv/)

Menu

- [Make It](https://www.cnbc.com/make-it/ "makeit")
- select

- [USA](https://www.cnbc.com/?region=usa)
- [INTL](https://www.cnbc.com/world/)

- [Livestream](https://www.cnbc.com/live-tv/)

Search quotes, news & videos

- [Livestream](https://www.cnbc.com/live-tv/)

[Watchlist](https://www.cnbc.com/watchlist/)

[SIGN IN](https://www.cnbc.com/2026/09/28/nvidia-releases.html)

[Create free account](https://www.cnbc.com/2026/09/28/nvidia-releases.html)

[Markets](https://www.cnbc.com/markets/)

[Business](https://www.cnbc.com/business/)

[Investing](https://www.cnbc.com/investing/)

[Tech](https://www.cnbc.com/technology/)

[Politics & Policy](https://www.cnbc.com/politics/)

[Video](https://www.cnbc.com/tv/)

[Watchlist](https://www.cnbc.com/watchlist/)

[Investing Club](https://www.cnbc.com/investingclub/subscribe?__source=investingclub|globalnav|join&tpcc=investingclub|globalnav|join)

Join IC

[PRO](https://www.cnbc.com/application/pro?__source=pro|globalnav|join&tpcc=pro|globalnav|join)

Join Pro

[Livestream](https://www.cnbc.com/live-tv/)

Menu

[Tech](https://www.cnbc.com/technology/)

# Nvidia releases software platform to stop AI agents from misbehaving

Published Mon, Sep 28 20265:00 AM EDTUpdated An Hour Ago

thumbnail

[Kif Leswing](https://www.cnbc.com/kif-leswing/)[@kifleswing](https://twitter.com/kifleswing)

[WATCH LIVE](https://www.cnbc.com/live-tv/)

Key Points

- Nvidia announced the Open Agent Safety Platform to prevent the type of breakout that occurred when OpenAI models accessed HuggingFace.
- OpenAI, Anthropic, Meta, and Google have all disclosed recent incidents where their AI models escaped their sandboxes.
- Nvidia said Cisco, Microsoft, Oracle, CoreWeave, Dell, HPE, Lenovo, ARM and Intel are partners.

In this article

- [NVDA](https://www.cnbc.com/quotes/NVDA)

Follow your favorite stocksCREATE FREE ACCOUNT

Nvidia releases software platform to stop AI agents from misbehaving

watch now

VIDEO1:1501:15

Nvidia releases software platform to stop AI agents from misbehaving

[Squawk Box](https://www.cnbc.com/squawk-box-us/)

[Nvidia](https://www.cnbc.com/quotes/NVDA/) is rolling out a new software platform to allow AI developers to set safeguards for agents and prevent them from breaking out of containment.

The release on Monday of Nvidia's Open Agent Safety Platform comes after companies including [OpenAI](https://www.cnbc.com/quotes/OPENAI.FG/), [Anthropic](https://www.cnbc.com/quotes/ANTHR.FG/), [Meta](https://www.cnbc.com/quotes/META/), and [Google](https://www.cnbc.com/quotes/GOOGL/) [disclosed](https://www.npr.org/2026/08/08/nx-s1-5924878/meta-ai-breaches-external-firm-during-security-testing-sandbox-error) recent [incidents](https://www.anthropic.com/research/alignment-assessment-cybersecurity-incidents) in which their artificial intelligence models escaped their sandboxes and attempted to hack other companies and access their computer systems.

Tune in at 8 a.m. ET as Nvidia CEO Jensen Huang speaks to CNBC about this news. [Watch in real time](https://www.cnbc.com/live-tv/) on CNBC+ or the CNBC Pro stream.

An Nvidia representative told reporters on a call on Sunday that its platform could have prevented OpenAI's HuggingFace incident in July. That's when OpenAI models escaped containment, accessed the open internet and breached Hugging Face, which operates an open-source developer platform.

"Each security incident is unique, and we have to look at all of them in detail," said Justin Boitano, vice president of enterprise AI at Nvidia, the world's most valuable company. "From what we know, Hugging Face reported over 17,000 agents attacking their infrastructure that went on for days and weeks."

Nvidia has been at the center of the generative AI boom since the launch of ChatGPT almost four years ago, as the chipmaker's graphics processing units are critical to the development of large language models and to the AI services offered by hyperscalers. But CEO Jensen Huang has more recently emerged as a key voice in the AI safety debate, arguing that many security concerns are engineering issues that can be solved through computer science and product development.

"You have to think about what you could have done, what's the solution for it," Huang [said](https://www.nytimes.com/2026/09/23/opinion/ezra-klein-podcast-jensen-huang.html) in a podcast with The New York Times' Ezra Klein released last week, referring to recent incidents. "In the future, improve your process so that you could avoid this from happening again."

Anthropic CEO Dario Amodei set off an industry firestorm two weeks ago, [urging](https://www.cnbc.com/2026/09/12/anthropics-amodei-proposes-plan-to-slow-the-pace-of-advancing-ai-capabilities.html) AI model developers to slow their pace of advancement due to fears of the models spinning out of control, an argument that was supported by OpenAI's [Sam Altman](https://www.cnbc.com/sam-altman/) and [SpaceX's](https://www.cnbc.com/quotes/SPCX/) [Elon Musk](https://www.cnbc.com/elon-musk/).

Nvidia's new offering is an engineering solution to the agent safety issue, Boitano said.

"Recent incidents have highlighted a fundamental hurdle for AI agents, and that is that model-level safeguards alone can't govern what agents can access or do," Boitano said

One component of the platform is called Nvidia OpenShell, which runs on central processors and sets limits on agent capabilities. Nvidia also announced Sentry, which monitors agents and runs on network chips, not CPUs or GPUs.

Some of the software is open source, and Nvidia is calling its platform a reference design, which means partners are intended to build products on top of it to bring it to market.

Nvidia named [Cisco](https://www.cnbc.com/quotes/CSCO/), [Microsoft](https://www.cnbc.com/quotes/MSFT/), [Oracle](https://www.cnbc.com/quotes/ORCL/), [CoreWeave](https://www.cnbc.com/quotes/CRWV/), [Dell](https://www.cnbc.com/quotes/DELL/), [HPE](https://www.cnbc.com/quotes/HPE/), Lenovo, [ARM](https://www.cnbc.com/quotes/ARM/) and [Intel](https://www.cnbc.com/quotes/INTC/) as partners. Nvidia is also working with Anthropic to integrate cloud managed agents with OpenShell.

**WATCH:** [Nvidia stock at the top of the laggards](https://www.cnbc.com/video/2026/09/18/nvidia-stock-is-at-he-top-of-the-laggards-says-mai-capitalas-chris-grisanti.html)

Nvidia stock is at he top of the laggards, says MAI Capital’s Chris Grisanti

watch now

VIDEO5:0905:09

Nvidia stock is at he top of the laggards, says MAI Capital’s Chris Grisanti

[The Exchange](https://www.cnbc.com/the-exchange/)

[Choose CNBC as your preferred sour
pseudolus20
🟧 echo.blog ⭐NVIDIA's official announcement: "NVIDIA today announced NVIDIA Open Agent Safety Platform, an open software platform and reference system deNVIDIA (corporate press release, NVIDIA Newsroom / Corporate Communications)β€”β€”
🟠 redditNvidia launches new tool to keep AI agents from going rogue
artificial
cnn8544
🟧 hnNvidia AI Agent Safety Stackketanbj31
🟧 hnNvidia Open Agent Safety PlatformAnimats12
🟧 hnNvidia launches platform to quarantine rogue AI agents in 'milliseconds'jethronethro51
🟧 hnNvidia wants to put a watchdog chip next to every AI agentjonbaer230298
🟧 hnNvidia launches new tool to keep AI agents from going roguerawgabbit12
🟧 hnNvidia launched a tool designed to stop AI agents from going rogue. How it worksrmason21
🟧 hnNvidia announces AI safety platformiamdamian22
🟠 redditWe tested NVIDIA OpenShell with a local qwen3:8b agent: a malicious setup script leaked a secret 10/10 without it, 0/10 with it. But auto-approval opened new hosts in 12/12 trials
OpenAI
No-Peanut-698831
🟧 hnAn AI agent escaped Google's kvmCTF sandboxsoltanov30
🟧 hnRepeated VM Escapes by GPT-5.6-Cyber Based Agentsgizzlon10
🟠 redditWatch Nvidia (NVDA) Rolls Out New Tools to Keep AI Agents in Line
artificial
beingmodest36
🟧 hnNvidia launches Open Agent Safety Platform to restrain rogue AI agentssbulaev11
🟧 hnNvidia debuted the Open Agent Safety Platformaknitb21
🟧 hnNvidia/OpenShell: Safe, private runtime for autonomous AI agentsgmays20

Interpretation history

Decision trace