I recently wrote a post about a secure, sustainable way to take advantage of artificial intelligence (AI, and all forms). The point was to not leave you vulnerable. And, I don’t think I was wrong, but I was a wee bit too limiting. Elizabeth Dalton (who I’m working with via Elevator 9) pointed me to an article that argues in much more depth about the necessary structure. So, my learning is that there’s a layer above that’s necessary as well.
In the post, I wrote about using small hybrid agents to do things, instead of using one monolithic entity to address all the needs. It was sort of a ‘use the right tool for the job’ article. And I do think it makes sense, for multiple reasons. For one, you control what you release when you control where and how when you host your own solutions. For another, they can be run securely on your or hosted storage. That means without connecting to anyone else. Yes, you do have to develop the systems, but that’s become relatively easy. And, you own what you create. That’s important.
What this article adds is the integrating layer. What they call sovereign AI, and that’s a term I’m going to use more frequently. You need to have the infrastructure that hosts the agents to be something you build and own as well. The article was by an entity that I don’t particularly know, but I trust more because it’s open. And, my inference is that there are other ways to do it, but the important thing is that you do do it.
If my understanding is correct, under such a scheme you can have an agent that’s one of those big ones (from Anthropic or OpenAI or…) in there as well. Just that they’ve containment and constraints, and so given specific access. It doesn’t allow the systems to run rampant, hacking your security for instance.
To me, that integration, that complete ownership, is the only scrutable way to do things. I’m not a developer, so I can’t weigh in more, but the article talks not only the importance, but the steps. A layer above is a necessary extension to the core idea of ‘build your own’ that has big and long-term implications for a scrutable and successful implementation. Why would you want anything else?
