AI agent security usually stops at protecting credentials, but that’s only half the problem. In a live demo with Akeyless, we gave a Claude Code agent full EC2 admin access, then tried to talk it into stopping a production server, even claiming CISO approval. Here’s how Agentic Runtime Authority blocked it anyway, and why AI agent security has to govern actions, not just access.