Identity is the control plane. Detection is a sensor.
Walking the vendor floor at RSAC this year, the count was roughly 40% prompt injection detection products, maybe 5% anything resembling agentic identity. That ratio is inverted from where the risk actually sits — and the gap is widening as agents move from demos into systems that do things on people’s behalf. Let me try to explain why I think most of the industry is optimizing the wrong control. The obvious part first Prompt injection is real. It is not going away. Detection has its place — as a sensor, alongside other sensors, feeding a decision layer. I am not arguing against building detectors. I am arguing against the implicit claim, encoded in how budgets are being spent, that detection is the decisive control for agentic systems. ...