An agent and a person entering a server room through separate doors, each with its own badge and its own line in the access log

Agents as users of the infrastructure

Your agents write code, open PRs and maybe SSH into your machines. Stop and check what permissions they actually have while doing it, and don’t put your trust in policy files and the like. You will find the same access-control problems as always, the ones that show up the moment somebody who is not you starts logging into your servers. Why does it happen? Because you treat agents as tools and not as users. ...

September 4, 2026 · 6 min · Juanjo Payá
A self-running loop discovering, executing and verifying work around a human checkpoint

Loop engineering: designing the system that prompts the agent

In June 2026 Addy Osmani and Boris Cherny put a name on something that isn’t new (by the current pace of “new”, at least): loop engineering. Osmani is an engineering leader at Google Chrome and a prolific writer on web development; Cherny is one of the creators of Claude Code. They laid it out in a thread on X and a couple of essays. The one-liner that captures it is Cherny’s: “I don’t prompt Claude anymore. I have loops running that prompt Claude.” The shift is small to say and large to live with. You stop being the person who holds the tool through every turn, and you start designing the system that finds the work, hands it out, checks it, writes down what’s done, and decides the next thing. ...

June 17, 2026 · 6 min · Juanjo Payá