Blog

Writing from Symbia Labs on AI infrastructure, agent security, and architecture.

Provenance is not truth

A grounded assistant and a raw model, same weights, answered four questions live on stream. The grounded one confidently dosed a drug that does not exist — and its own receipt is what lets you catch that. Provenance buys checkability, not correctness.

The Shock That Reports Late

The 2026 fertiliser shock is being scored as absorbed on an indicator that reverts in months, by an analytical community that identified the mechanism inside four weeks.

The Wrong Chokepoint

A wrong answer about gun barrels turns out to be more useful than the right one: supplier concentration does not predict which input binds. Whether money can make more of it in time does.

The Protection Nobody Has to Buy

Somali pirates have taken nine ships in 2026, every one belonging to an owner who declined the optional layer. Protection became elective, not unaffordable.

The Veto That Was Actually Used

Everyone is watching whether Washington will license the KF-21. The only time a Korean fighter sale was actually killed by a foreign component, the government that killed it was Britain.

The Capacity Complaint

Every previous trade remedy could be answered by changing what you ship. A complaint about unused capacity can only be answered by scrapping the plant.

The Price of Permission

China’s rare-earth prices and volumes both rose this year. That combination is what a licence costs, and it is not what a shortage looks like.

Nobody Is Buying Ships for the Arctic Route

Northern Sea Route cargo fell 2.3 per cent in the same year its transit traffic set a record, and the ships that made the headline Arctic runs were a 25-year-old boxship and a tanker with no ice protection.

Two Lists Now Govern the Strait of Hormuz, and Only One of Them Is Published

Washington committed twenty billion dollars to a Hormuz insurance facility and got one power out of it: the right to say which ships are eligible. Tehran built the same instrument two months later, and published the paperwork.

Iceland Priced the Wrong Exclusion

Iceland voted to keep an arrangement that has not incorporated the Digital Markets Act in the four years since it was adopted. The fisheries exclusion was on the ballot; the backlog of 556 acts was not.

The Separately Priced Clause

Pacific security agreements carry an exclusivity term that can be struck out while the rest of the deal survives, and that has been paid for in cash where it wasn’t. Nobody has yet enforced one.

Sovereign Lending Fell. Chinese Exposure Did Not.

Zambia’s official creditors gave up twelve years and most of their yield, and not one dollar of principal. What they escaped by moving into equity and offtake was process, not loss.

The Mecca Agreement Was Signed in August. It Happened in May.

Every operative element of the Turkey–Saudi–Pakistan defence pact was already flowing before the signing ceremony. The document is a receipt, not a plan.

Twenty Billion Dollars Moved Zero Tankers

The strait closed financially in forty-eight hours. A $20bn US reinsurance facility, built to run the same mechanism backwards, moved not one tanker in three weeks.

The Future Wasn't Impossible. It Was Out of Order.

NEOM's collapse is read as proof that cities of tomorrow can't be built. China has been building them for forty years — by refusing to build them the way Saudi Arabia did. Written under a register-then-measure protocol; provenance pack attached.

Why We're Still Rooting for MoltBot

A vision worth saving. The project's collapse was not a failure of its vision—it was a predictable consequence of inadequate infrastructure.

5 Shocking Lessons from the MoltBot Saga

The AI assistant that took over GitHub—then imploded. From a $16M crypto scam to 1,800+ exposed dashboards and shadow AI in the enterprise.

The MoltBot AI Agent Security Crisis

Executive summary of the MoltBot phenomenon, security failures, and proposed architectural solutions for enterprise AI infrastructure.

An Architectural Tale of Two AI Agents

A side-by-side comparison of MoltBot vs. Symbia: credential storage vs. routing, shared houses vs. secure apartments, and why security must be foundational.

The Rise and Fall of MoltBot

How 60,000+ GitHub stars, 1,800+ exposed dashboards, and a $16M crypto scam revealed the urgent need for secure AI infrastructure.

Migrating from MoltBot to Symbia

A comprehensive technical guide to secure AI orchestration. Learn how to convert MoltBot skills to Symbia Assistants with proper identity, policy, and audit capabilities.