{"item":{"id":"obs-topic-isolation","product":"grok-bot","language":"en","title":"Are two agents actually two isolated workspaces?","summary":"Trace shared files, browser sessions, credentials and permissions. Separate names and conversations do not establish separation.","contentType":"guide","category":"security","revision":2,"canonicalUrl":"https://botclaw.tech/items/obs-topic-isolation","sourceUrls":["https://x.ai/bot","https://research.meta.ai/blog/security-and-safety-for-ai-agents-our-approach-with-muse","https://docs.openclaw.ai/gateway/security"],"sourcePublishedAt":"2026-10-01T16:24:26.193Z","reviewedAt":"2026-10-01T15:50:00.000Z","collectedAt":"2026-10-01T16:24:26.193Z","updatedAt":"2026-10-01T16:24:32.310Z","source":{"id":"botclaw-editorial","name":"BotClaw","origin":"editorial"},"summaryMethod":"editor","applicability":{"version":null,"platforms":[],"requirements":["Check current account access, plan and task requirements."]},"verification":{"kind":"official_documentation","checkedAt":"2026-10-01T15:50:00.000Z","urls":["https://x.ai/bot","https://research.meta.ai/blog/security-and-safety-for-ai-agents-our-approach-with-muse","https://docs.openclaw.ai/gateway/security"],"limitations":["Source-backed facts plus BotClaw editorial interpretation. No product account, inference or agent performance test was run."]},"body":{"introduction":"Isolation has a scope: between users, between agents, between tasks or between the runtime and credentials. Ask which boundary a source actually describes.","sections":[{"heading":"Map shared state","paragraphs":["Draw the file store, browser profile, credential service and permission authority. Mark what each agent can read and modify. Sharing a computer can be useful, but it changes concurrency and privacy assumptions."]},{"heading":"Use an observable test","paragraphs":["Put a synthetic marker in one workspace and ask the second agent to locate it without telling it the marker. Test both allowed sharing and expected separation. Never use real credentials as the marker."]},{"heading":"Capture the boundary","paragraphs":[],"steps":["Record the user, agent, task and workspace identifiers.","Inspect file and browser visibility before enabling concurrent tasks.","Save the result as an observed configuration, not a universal product guarantee."]}]},"editorial":{"section":"topic","productIds":["grok-bot","muse","openclaw","cue"],"relatedIds":["obs-profile-grok-bot","obs-topic-approvals"],"sourceDate":null,"version":null},"indexable":true,"supersededBy":null,"review":{"state":"current","pendingChanges":0,"policyDays":7}}}