The AI tools executing your tasks are broadcasting your passwords.
Illia Polosukhin, a co-author of the foundational “Attention Is All You Need” paper, says current AI agent architecture is insecure by design. On Bankless, he explained that services like OpenAI’s OpenClaw routinely send user API keys, bearer tokens, and access credentials to external services, where they sit exposed in logs. He calls the practice “insane.” His proposed fix, via his project IronClaw, leverages crypto to ensure secrets never touch the large language model, using blockchain as a root of trust for identity and payments.
This security flaw underscores a deeper architectural crisis as AI shifts from chatbots to autonomous agents. As Anthropic’s Jack Clark noted on The Ezra Klein Show, agents are becoming “doers” that independently use tools and work over time. This capability is rewriting the software sector, but it also demands a new backend. Polosukhin argues that as AI becomes the primary computing interface, today’s centralized service model will fail at establishing trust and facilitating transactions between machines.
Illia Polosukhin, Bankless:
- When you use Entropic OpenAI, or even worse, you use something else for inference, OpenClaw actually sends all your secrets to those services as well.
- Somewhere in Entropic and OpenAI logs, they have everybody's access keys, API keys, and bearer tokens to access your Gmails and your Notions.
The agent revolution is also reshaping team dynamics and labor value. On Citadel Dispatch, Matt Ahlborg of PPQ.ai argued the winning hire is now a marketer or community manager who can code, using AI to build their own tools. Pure technical skill is being commoditized in favor of business velocity and a willingness to integrate AI into core workflows.
Together, these perspectives paint a picture of rapid, disruptive adoption held back by foundational flaws. The agents are gaining capability but lack security and a trustworthy coordination layer. The market is betting on the “doers,” but the infrastructure to support them safely is still being built - and crypto-native builders are betting they have the missing pieces.


