A web page is not permission for your AI agent
An agent can use a page, document or message as evidence without treating instructions inside it as authority. Design that boundary before connecting powerful tools.
Short, reviewed pieces on practical AI topics. Every factual claim is registered against a primary source, the same honest-claims and source policy the course lessons follow — these are not marketing copy or unreviewed drafts.
An agent can use a page, document or message as evidence without treating instructions inside it as authority. Design that boundary before connecting powerful tools.
A full disk invites a hurried deletion. A safer home-server workflow identifies the owner, growth rate, reclaimable data, retention need and recovery path before cleanup becomes automatic.
Running a model on your own machine can remove one remote data path, but prompts, tools, logs, saved outputs, backups and sharing still decide where information travels.
AI can help shape an outbound message without deciding who receives it or pressing send. Use a bounded draft, a deliberate human check and a clear correction path.
Map every smart-home dependency before an outage: where decisions happen, how updates arrive, what fails and which safe manual path remains available.
A practical home-server guide to separating liveness, readiness and restart signals from the human decisions that make recovery safe.
A tunnel can keep an origin off the public internet, but it does not answer who should use the application. Separate routing, identity and application permissions with a small, testable checklist.
Permissions limit what an agent may touch. A separate budget for time, steps, data and queued work limits how much it can consume before it must stop.
Memory helps an agent continue a task, but it cannot prove what happened. Separate useful context from a small, reviewable record of each run.
A practical evidence trail for AI-assisted work: pin the inputs and revision, record what actually ran, separate review from authorship, and keep a recovery path.
A practical OPNsense-inspired checklist for separating trust zones, writing understandable rules, testing the path and keeping a recovery route when a firewall change goes wrong.
A confident answer is not evidence. Build a small verification plan around the claim, the consequence of being wrong, and the source or test that can actually settle it.
A practical way to design scheduled automation around missed runs, duplicates, evidence, approval and recovery instead of assuming a clock makes work reliable.
An alert nobody acts on is not monitoring. It is noise with a notification sound. A practical way to decide which home-server alerts deserve to interrupt you, using precision, recall, detection time and reset time.
What network-wide DNS filtering genuinely solves, the ceiling AdGuard's own documentation sets out, and how encrypted DNS and Encrypted Client Hello change the picture.
Why the real risk of an AI agent is the authority you hand it, not the model going rogue — and a practical way to turn down its functionality, permissions and autonomy separately.
A practical checklist for designing Home Assistant automations that recover clearly, leave evidence and avoid doing the wrong thing twice.
A practical way to design household automations so missed conditions, failed actions and recovery steps are visible instead of mysterious.
A practical home-server guide to turning backup jobs into evidence you can actually recover from, using restore drills, integrity checks and clear limits.
A practical data-confidentiality guide for anyone about to paste a document, email or dataset into a general AI chat tool — what actually counts as sensitive, what happens to it next, and where the UK's data protection guidance sits.
A five-minute, practical way to narrow down your first local AI model — and where to go for the deeper, hands-on version in the Local AI Agents course.
A standalone explainer of what "quantisation" means for a downloadable AI model file, what it actually costs, and how to read a name like Q4_K_M before you download it.