Careers

Build agent security in the open.

delego is open-source, intent-bound action authorization for AI agents — the layer that stops a prompt-injected agent from misusing a valid credential (the “confused deputy”). We’re small, remote, and shipping a protocol plus reference implementation in the open. If you read specs for fun and think like an attacker, we want to meet you.

AI Engineering Intern

RemoteInternshipFlexible hoursOpen source

The application is a challenge, not a résumé.

Find where our implementation diverges from the spec — a missing check, a conformance gap, a real vulnerability — and tell us, citing the exact spec section and how to reproduce it. In your own words, written by you, not an AI. Strongest finding gets the role.

What you’d work on

  • Build and test features in the Python authorization engine and the MCP server.
  • Write conformance vectors, examples, and developer docs.
  • Prototype integrations with agent frameworks and credential brokers.
  • Help shape the open wire specification used across implementations.
Apply Star the repo

We’d rather see how you think than what’s on your CV.