Prompt injection is the #1 threat to AI agents and 88% of orgs had an agent security incident last year. The bottleneck in red-teaming isn't the scanner — it's the attack corpus and the labeled trajectories. A field guide to treating agent security as a data pipeline.