- Peter Yang's post is Apple TV recommendations. No AI content.
01
The new user is an agent, and most products aren't designed for it
Box CEO Aaron Levie posted a framework that cuts through a lot of the agent hype. His argument: personal agents like Muse represent a new design target for software. You're no longer building for a human who clicks around your interface. You're building for an agent that needs to complete a task end-to-end, use your MCP or CLI, navigate your site, and transact, without any human holding its hand. ---
Why it matters: If your product's UX assumes a person will read an error message and figure it out, an agent will just fail silently and move on. Every SaaS company with a "30-day free trial, no credit card required" onboarding flow is about to learn that agents don't read tooltips. The companies that win the next product cycle will be the ones that made their APIs and workflows agent-navigable before they had to.
A security warning worth taking seriously: agents as an attack surface
Aditya Agarwal, a longtime engineering and product leader, looked at the wave of agent-related announcements from Google, OpenAI, and Anthropic and drew a conclusion most people in the room are avoiding: if AI agents can now navigate enterprise systems, authenticate, transact, and operate with minimal human oversight, then nation-state actors who have quietly compromised those systems are now sitting on a much more valuable position than anyone realized.
Why it matters: Your security team is probably thinking about agents as a threat vector for inbound attacks. Agarwal is pointing at something different: the agents you're deploying internally may be operating inside infrastructure that's already been penetrated. An agent with broad system access and no fatigue is a very efficient exfiltration tool if someone else is already inside the walls.