HYBRID DEVNET · PUBLIC EVIDENCE LIVEVerifiable infrastructure for value, markets, identity, and operational dataInspect the network
Security & privacy

Does sharing a collection grant access to all my private data?

3 min read

Collection publication, audience, discovery, and agent capabilities are separate controls. Agentic Memory Exchange is knowledge-only: sharing approved context does not grant wallet, signing, contracting, or settlement authority.

Share a defined collection, not an undefined data pool

A collection should describe the information that is intentionally being made available for a purpose. The private source documents and the reviewed information derived from them are not necessarily the same thing. Decide what the recipient needs, who may receive it, and which permitted capabilities they should have. This is easier to evaluate than a broad promise that an agent can access “our data,” which leaves the actual boundary unclear.

Keep changes under review

New questions or revised answers can change what a collection communicates. Give those changes an explicit review step rather than assuming that an initial publication approves every future addition. Ask who owns the source material, who approves publication, and who manages the intended audience. These responsibilities can belong to different people. A recipient’s ability to discover a collection should also be distinguished from its permission to read or use the available content.

Test the boundary from both sides

Use representative non-confidential material to check what the intended recipient can read and what an unintended recipient cannot. Confirm that the agent receives only the permitted context and does not gain authority over unrelated products. An answer about a budget does not grant permission to spend the budget. Also consider what happens after information is disclosed: changing future access cannot make a recipient forget content it already obtained. Plan the publication carefully before treating later revocation as a complete remedy.

What to do next

Define the permitted sources and recipients, then test that out-of-scope material cannot be read.