Waxell blog cover: diagram of an MCP governance layer sitting between agents and MCP servers

What Is MCP Governance?

What Is MCP Governance?

MCP governance controls which MCP servers your agents can reach and what they can do there. See how the 2026 spec changes and Waxell enforce it.

Logan Kelly

Waxell blog cover: human-in-the-loop approval fatigue at scale

30 PRs Daily: Why Human-in-the-Loop Approval Gates Break at Scale — And the Policy-Based Fix

30 PRs Daily: Why Human-in-the-Loop Approval Gates Break at Scale — And the Policy-Based Fix

30 PRs every morning, rubber-stamped before coffee. Naive HITL gates fail at enterprise scale. Here's the policy-based architecture that actually works.

Logan Kelly

Waxell blog cover: China AI agent authorization rules 2026

China's AI Agent Rules Are Live: What the 3-Tier Authorization Mandate Means for Your Deployments

China's AI Agent Rules Are Live: What the 3-Tier Authorization Mandate Means for Your Deployments

China's first binding AI agent rules took effect July 15. Here's what the 3-tier authorization and human approval mandate mean for enterprise deployments.

Logan Kelly

Waxell blog cover: numbered list of ten agentic AI risk categories mapped to enforcement layers

OWASP Top 10 for Agentic Applications, Explained

OWASP Top 10 for Agentic Applications, Explained

ASI01–ASI10 are OWASP's ranked risks for AI agents. See what each one means and how to enforce against it.

Logan Kelly

Waxell blog cover: green checkmarks next to benchmark scores alongside red warning icons for governance policy failures

AI Agent Testing: Why Benchmark Scores Pass While Governance Policies Fail in Production

AI Agent Testing: Why Benchmark Scores Pass While Governance Policies Fail in Production

UC Berkeley proved every AI agent benchmark can be gamed. Most teams test behavior. No one tests whether governance policies actually fire. Here's the gap.

Logan Kelly

Waxell blog cover: AI agent runbook and on-call operations guide 2026

Hugging Face Breach: How an AI Agent Ran the Attack — and What Defenders Need Next

Hugging Face Breach: How an AI Agent Ran the Attack — and What Defenders Need Next

An autonomous AI agent breached Hugging Face's dataset pipeline, harvesting credentials across clusters. The governance gap it exposed — and how to close it.

Logan Kelly

Waxell

Waxell provides observability and governance for AI agents in production. Bring your own framework.

© 2026 Waxell. All rights reserved.

Patent Pending.

Waxell

Waxell provides observability and governance for AI agents in production. Bring your own framework.

© 2026 Waxell. All rights reserved.

Patent Pending.

Waxell

Waxell provides observability and governance for AI agents in production. Bring your own framework.

© 2026 Waxell. All rights reserved.

Patent Pending.