Security for AI and Agent Augmented Coding on Windows | OD853

Klorida Miraj and Nazmus Sakib explain how Windows can provide OS-level security and governance for AI agent and agent-augmented coding workflows, using examples like sandboxing in GitHub CLI. The session focuses on containment, detection/response, and identity models to move agents from experiments to production safely.

Overview

This Microsoft Build 2026 session covers security considerations for agentic software on Windows, with an emphasis on how OS-level capabilities can help developers run AI agents with clearer execution boundaries and reduced privilege.

Windows and the rise of agentic software

Example: collaborative agent building and “agent terrarium”

Understanding agent risks

Governance foundations for agents

The session organizes agent governance around four pillars:

Containment and the Microsoft Execution Containers SDK (MXC)

Containment spectrum

The session describes a range of containment options, including:

Detection and response

Agent identity models and Entra integration

Conclusion: unified agent governance