This is the exact problem agent users are running into as tools get more powerful.
Hermes Agent + Infisical Agent Vault means the agent can call APIs without ever seeing the real secrets.
Your AI agent has your API keys. A poisoned document tells it to curl your secrets to an attacker's server.
This is credential exfiltration, and it's the #1 risk in agentic AI right now.
The fix is removing the secret from the agent entirely.
Agent Vault sits between your agent and the APIs it calls. The agent gets dummy credentials, and Agent Vault swaps in the real ones at the network layer.
The agent never sees your keys.
We just dropped a full video + guide on connecting Hermes Agent to Agent Vault on a VPS!
@sudoingX What model would you recommend for a 3070 with 8 GB of vram? I tried running a couple locals on some Mac mini‘s too but could never get meaningful use