Fetching from the wire…
Public story · 2026-09-22 · high
BigID, Cohesity, Semarchy and SereneDB each released agent identity, permissions or recovery tools on September 22.
Why now: The four launches posted within hours of each other on September 22, the only reason four separate bets read as a pattern instead of a coincidence.
BigID launched AgentIQ on September 22. It runs a data security and compliance program from a prompt inside Claude, Copilot, GPT or Gemini, through BigID's own MCP connector. Three other vendors released products the same day making an identical bet.
A static service account doesn't get revoked when one agent misbehaves. It doesn't get restored after a bad run touches the wrong table either. These four products assume that gap now costs a budget line.
Cohesity introduced Agent Resilience, built to discover, protect and recover the infrastructure behind enterprise AI agents, starting with support for Amazon Bedrock. Semarchy shipped Intelligent Data Products, where every data product automatically spins up its own MCP server carrying its quality rules and access rights. SereneDB released a database that enforces roles and permissions for agents at the data layer itself.
These four companies compete in different markets: security, backup, master data management and databases, respectively. But they all reached the same answer to one question. Does an agent get an identity of its own, or does it run on someone else's login?
None of the four vendors say what happens when an agent's permissions conflict across two of these systems. BigID's MCP layer and SereneDB's role enforcement could both sit on the same database with no shared rulebook. That gap is where the next incident starts.
Each link below shares sources, entities, or timing with this story.
On September 22, BigID launched AgentIQ, running a data security and compliance program from a prompt inside Claude, Copilot, GPT or Gemini through BigID's MCP server. Cohesity introduced Agent Resilience, which discovers, protects and recovers the infrastructure behind enterp...
MCP's new roadmap and A2A's move under the Agentic AI Foundation both point at the same target next: agent identity for enterprise deployments.
GitHub's allowlists fail closed on bad config, Nutanix wired agent access into existing RBAC, and the same servers set up per-agent billing next.
Most zeroed in on the same three defenses within days, squeezing Arrakis, Hush and Bloom, which sell agent governance as their whole product.
AgentSky topped Product Hunt's August 3 leaderboard with 220 points; its cloud cloning copies a local Claude Code or Codex agent into the cloud with one prompt.
EU AI Act Article 50 became enforceable August 2, turning audit logs from an enterprise upsell into a shipping requirement.
MindPattern daily
One email a day at 7 AM. Sources and a take on every story. Unsubscribe anytime.