Shared Agent Memory'nin Access-Control Problemi Var ve Kimse Çözmedi
Tencent Team Memory, Asana Agentic Work Management ve open-source memory projeleri gerçekten önemli sorularla karşılaştırılıyor: bir memory'yi kim okuyabilir, yanlış olduğunda ne olur ve hangi version kazanır.
Bu sayfada
- Ne oldu
- Four questions, compared
- Her system neyi doğru yapıyor
- Unsolved middle: correction, conflict, propagation
- Şimdi ne yapmalı
- FAQ
- Shared agent memory one sentence?
- Tencent Team Memory mi Asana AI Teammates mi more secure?
- Shared memory wrong olursa ne olur?
- Two agents' contradicting memories automatically reconciled olabilir mi?
- Sonuç
- Kaynaklar
Bir yıl önce karşı çıkacağım claim: agent memory'nin hard part'ı agent'ın hatırlaması değildi. Elli agent aynı yanlış şeyi hatırladığında ne olacağını belirlemek. Single-agent memory convenience problem. Memory team across shared olduğunda organisational access-control problem oluyor, correction, deletion ve conflict semantics ile, ve current products tam bu features'da thin.
İki vendor haftalar içinde cevap ship etti. Launch'ta ayrı piece'de covered ettiğim Tencent Cloud Team Memory release, 13 Ağustos'ta governed memory hub'ı open-source yaptı. Asana geçen yıl sonundan beri closed, platform-bound version Agentic Work Management'ı AI Teammates ile quietly run ediyor. Bu başka announcement recap değil. Announcements'ın atladığı comparison: memory correction, deletion veya adjudication gerektiğinde system ne yapıyor, organisation içinde kim decide ediyor.
Temel çıkarımlar - Shared memory wrong fact'ı one user's annoyance'dan every agent's inheritance'a dönüştürüyor. Load-bearing feature retrieval quality değil governance layer. - Tencent Team Memory en explicit access model'i ship ediyor, four visibility tiers, per-agent loadouts, private by default, fakat other agents'ın consumed ettiği fact için documented correction veya expiry process yok. - Asana Agentic Work Management confidential-leak case'i existing Work Graph permissions inherit ederek doğru çözüyor, ama memory Asana platform içinde ve correction semantics opaque. - Zep Graphiti stale facts için principled answer'lı tek mainstream implementation: delete değil invalidate, history korunuyor. Ancak one agent memory govern ediyor, team değil. - İki agents same thing hakkında contradicting facts yazdığında conflict resolution ship eden yok. Soru şu an "retrieval ranking" ile cevaplanıyor, bu cevap değil.
Ne oldu
Ağustos'un ilk iki haftasında shared agent memory research topic'ten shipping category'ye geçti. İki event anchor:
13 Ağustos Tencent Cloud, open-source TencentDB Agent Memory project'in team-scale extension'ı Team Memory'yi announced. Conversations, documents, code graphs, distilled skills owner, version ve four-tier visibility model olan governed team assets oluyor, agent role başına assembled.
Bir hafta earlier, VentureBeat fireside chat with Asana CPO Arnab Bose Agentic Work Management, AWM, Asana AI Teammates arkasındaki shared-memory system hakkında first real technical detail verdi, Asana bunun FedEx dahil customers ile production olduğunu söylüyor.
Etrafında open-source single-agent memory layer var, Mem0, Zep Graphiti, Letta, teams'in actual memory infrastructure bulk'ı burada. Interesting shift: hepsi same four questions ile evaluate ediliyor. Memory'yi kim okuyabilir? Wrong ise ne olur? Deleted ise ne olur? Two memories disagree ederse ne olur?
Tencent Cloud, agent teams için governed shared-memory hub Team Memory'yi 13 Ağustos 2026 ship etti, announcement'a göre. Days earlier Asana CPO, AI Teammates arkasındaki shared-memory system Agentic Work Management'ı VentureBeat interview'da detaylandırdı, 3 Ağustos 2026.
Four questions, compared
Lazy framing "Tencent versus Asana", Chinese open source versus American SaaS. Actual shape değil. Real split memory'yi permissions'lı documents olarak govern eden systems ile lifecycles'lı facts olarak govern eden systems arasında, ikisinde de both halves yok.
|
|
TencentDB Team Memory |
Asana AWM / AI Teammates |
Zep Graphiti |
Mem0 |
|---|---|---|---|---|
|
Unit of memory |
Governed assets: chat, wiki, code graph, skills |
Work Graph üzerinde team-wide memory |
Temporal knowledge graph edges |
Per-user ve per-agent facts |
|
Organisational access |
Four tiers: private, team, restricted, agent. Private by default, per-agent loadouts |
Asana existing workspace permissions inherit; memory project access ile scoped |
Access control application probleminiz |
Per-user/per-app scoping; org controls platform tier ile |
|
Correction semantics |
Asset başına versioning/status tracking; consumed olduktan sonra documented correction/expiry process yok |
Feedback/checkpoints behaviour correct eder; memory correction publicly documented değil |
Facts timestamps ile invalidated, old relationships history olarak retained |
Update/delete APIs; correction explicit by call |
|
Deletion |
Owner- ve permission-gated |
Asana workspace data controls tarafından governed |
Invalidation preferred over deletion |
Hard delete supported |
|
Conflict handling |
Unspecified; launch'tan hours içinde practitioners flagged |
Publicly documented değil |
Conflicting facts validity windows ile kept |
Deduplication at write time |
Correction ve conflict rows'u okuyun, uncomfortable pattern: most matter eden two cells, nobody filled.
Team Memory documentation "who can use it, which version is valid, and which Agent should receive it" ayırıyor, Tencent documentation VentureBeat reporting'e göre. Zep Graphiti stale facts delete yerine invalidate ediyor, repository'ye göre. Tencent/Asana other agents consumed shared memories için correction/conflict-resolution process publicly document etmiyor.
Her system neyi doğru yapıyor
Tencent contribution access model ve herkes vague iken explicit olduğu için credit. Every memory asset owner, version, visibility tier, private/team/restricted/agent taşır; new assets default private; agents entire hub yerine role-matched "Agent Loadout" alır. Research Scout agent market-analysis assets, Builder code graph. Memory organisational infrastructure with lock policy, VentureBeat coverage'ın not ettiği gibi, documentation plain RAG line'ı çekiyor: retrieval what can be found, Team Memory who can use it de answer.
Asana contribution leak boundary, example every governance deck'te olmalı. Executive AI Teammate confidential M&A project memory build ederse, later same Teammate ile konuşan colleague o context'i inherit etmemeli. Bose answer, VentureBeat interview'a göre, AWM Asana 18-year-old Work Graph üstünde, memory access underlying work same permissions inherit: project göremiyorsanız agent's memory de sizin değil. Genuinely hard problem yeni permission system build etmeyi refuse ederek solved, Asana zaten who can see what bildiği için çalışır. Asana last September AI Teammates announcement beri team-wide memory/enterprise controls konuşuyor, M&A boundary first concrete mechanism.
Graphiti contribution lifecycle. Most systems wrong fact deletion problem treat. Graphiti time problem treat: fact true olmaktan çıktığında edge invalidated/timestamped, erased değil, agent "what true now" ve "what true in March" answer. Audit olan anything için right primitive, single-agent world'den gelmesi notable.
Tencent most explicit access tiers ve private-by-default sharing ship; Asana agent memory existing Work Graph permissions'a scope ederek confidential-project memory uncleared colleagues'a leak etmesini engelliyor, Asana CPO Arnab Bose VentureBeat'te; Zep Graphiti stale facts delete yerine timestamps ile invalidate ediyor, repository'ye göre.
Unsolved middle: correction, conflict, propagation
Launch narratives'ın skip ettiği kısım. Single-agent memory wrong fact one user repeated correction. Shared store wrong fact, anyone notices önce okuyan every agent'a propagate, shipping systems process document etmiyor. VentureBeat launch coverage practitioners gap'i hours içinde flagged: consumed facts correction/expiry, never written down olması gereken şeyler, two teammates' agents same module contradicting facts yazınca shared store winner seçmesi. Single-agent memory slow drift. Shared memory fast drift, çünkü stale write source session'ı hiç görmeyen people'a reaches.
Implementation nitpick değil, point release fix değil. March 2026 "Governed Memory: A Production Architecture for Multi-Agent Workflows" paper governance fragmentation ve feedback loops olmadan silent quality degradation'ı shared multi-agent memory structural risks olarak identifies, polite academic "failure mode architecture'a baked, vendor değil". Security framing compounds: OWASP agentic threat guidance memory poisoning distinct attack class, shared store shared blast radius. Asana permission inheritance ve Tencent private-by-default tiers kim poisoned/stale memory okuyabilir limit. Bad one read olduktan sonra ne olur adres yok.
My read: correction/conflict resolution every shared information system gibi social olacak. Named owner per asset, review habit, expiry norm. Category winners social process easy yapan tools, automate away promise değil. Wikis, CRMs, feature flags filmi. Governance features product, agent governance piece same conclusion, "just add memory" agentic architecture plan olmamasının reason.
Team Memory launch'a responding practitioners correction, expiry, conflict resolution undocumented gaps flagged, VentureBeat'e göre. March 2026 "Governed Memory" paper same risks structural identifies, OWASP agentic AI threat guidance memory poisoning distinct attack class.
Şimdi ne yapmalı
Bu quarter shared agent memory evaluate ediyorsanız four steps order:
Bugün: Demo öncesi four answers yazın: read scope, correction process, deletion semantics, conflict rule. Match feature-by-feature yapamayan vendor roadmap end'ini gösteriyor.
Bu hafta: M&A test run. Confidential project altında memory create, same agent'a project access olmayan user olarak question. Asana explicitly designed; everyone else demonstrate etmeli.
Bu ay: Sandbox'ta deliberately poison. Plausible wrong fact shared store'a write, two agents consume, sonra retract. Afternoon propagation/cleanup öğrenmek architecture diagram'dan fazla.
Ongoing: Owners assign. Named human correctness responsibility olmayan memory asset vector index'li technical debt.
Memory needs hala single-agent ise calculus lighter; self-hosted agent piece trade-off'un o tarafı.
FAQ
Shared agent memory one sentence?
Multiple agents ve humans'ın read/write ettiği persistent facts, procedures, context store; team every agent'ı scratch'tan re-brief etmeyi bırakır, birbirinin mistakes'ini inherit etmeye başlar.
Tencent Team Memory mi Asana AI Teammates mi more secure?
Different questions. Tencent more granular explicit access model, four tiers, per-agent loadouts, private by default, self-host, data location choice. Asana coarser but battle-tested, existing confidential work workspace permissions inherit. "Secure" mostly "org chart için correctly scoped", only you know.
Shared memory wrong olursa ne olur?
Today mostly nothing automatic. Tencent versions/status tracks, consumed facts correction/expiry document etmiyor. Asana human feedback loops ile behaviour correct, memory correction document etmiyor. Graphiti stale facts timestamps ile invalidate, best primitive, one agent graph govern. Whichever choose manual review budget.
Two agents' contradicting memories automatically reconciled olabilir mi?
Evidence olan shipping system yok. Current behaviour retrieval ranking picks one, conflict invisibly per query similarity score ile resolved. Regulatory/financial/safety facts varsa "whose memory wins" own policy question, wait feature değil.
Sonuç
Shared memory right direction, unfinished product. Tencent/Asana access-control half buildable independently proved, one open/portable, one closed/permission-native, August milestone. Correction, expiry, conflict half nobody documents, by default yours. Access controls buy, corrections yourself plan, every shared memory whole team already acted on fact gibi treat, notice ettiğinizde likely did.
Shared memory own agent stack'te nereye fit ediyor çalışıyorsanız, clients ile regular conversation. İletişime geçin.
Kaynaklar
Tencent Cloud, "TencentDB Agent Memory Releases Team Memory": https://www.tencentcloud.com/dynamic/news-details/101465 (yayımlanma 2026-08-13, erişim 2026-08-29)
VentureBeat, "Tencent's Team Memory shares AI agent memory across a team, with no governance yet for when it's wrong": https://venturebeat.com/data/tencents-team-memory-shares-ai-agent-memory-across-a-team-with-no-governance-yet-for-when-its-wrong (yayımlanma 2026-08-07, erişim 2026-08-29)
VentureBeat, "Asana's AI agents share memory across your company, but not your secrets": https://venturebeat.com/orchestration/asanas-ai-agents-share-memory-across-your-company-but-not-your-secrets (yayımlanma 2026-08-03, erişim 2026-08-29)
Asana, Inc., "Asana Announces New AI Teammates": https://investors.asana.com/news-releases/news-release-details/asana-announces-new-ai-teammates-collaborative-agents-deliver/ (yayımlanma 2025-09-25, erişim 2026-08-29)
TencentCloud, TencentDB-Agent-Memory repository: https://github.com/TencentCloud/TencentDB-Agent-Memory (erişim 2026-08-29)
Zep, Graphiti repository: https://github.com/getzep/graphiti (erişim 2026-08-29)
Mem0 repository: https://github.com/mem0ai/mem0 (erişim 2026-08-29)
OWASP, "Agentic AI Threats and Mitigations": https://genai.owasp.org/resource/agentic-ai-threats-and-mitigations/ (erişim 2026-08-29)
Okumaya devam et
Agent Field Notes
Bir sonraki sayıyı alın.
Ajan harness’ları, çalışma zamanı ortamları, güvenlik ve yönetişim; bu sistemleri işletmek zorunda olanlar için açıklanıyor.
Buna benzer bir kararla mı karşı karşıyasınız?
Aracı sistemleri hakkında önemli kararlar alan ekipler için mimari incelemeler, yönetişim değerlendirmeleri ve sürümü sabitlenmiş çerçeve karşılaştırmaları yürütüyoruz.