Box CEO Aaron Levie on AI’s ‘era of context’

7 months ago 57

On Thursday, Box launched its developer league Boxworks by announcing a caller acceptable of AI features, gathering agentic AI models into the backbone of the company’s products.

It’s much merchandise announcements than accustomed for the conference, reflecting the progressively accelerated gait of AI improvement astatine the company: Box launched its AI workplace past year, followed by a caller acceptable of data-extraction agents in February, and others for hunt and heavy probe in May.

Now, the institution is rolling retired a caller strategy called Box Automate that works arsenic a benignant of operating strategy for AI agents, breaking workflows into antithetic segments that tin beryllium augmented with AI arsenic necessary.

I spoke with CEO Aaron Levie astir the company’s attack to AI, and the perilous enactment of competing with instauration exemplary companies. Unsurprisingly, helium was precise bullish astir the possibilities for AI agents successful the modern workplace, but helium was besides clear-eyed astir the limitations of existent models and however to negociate those limitations with existing technology.

This interrogation has been edited for magnitude and clarity.

TechCrunch: You’re announcing a clump of AI products today, truthful I privation to commencement by asking astir the big-picture vision. Why physique AI agents into a unreality content-management service?

Aaron Levie: So the happening that we deliberation astir each time agelong – and what our absorption is astatine Box – is however overmuch enactment is changing owed to AI. And the immense bulk of the interaction close present is connected workflows involving unstructured data. We’ve already been capable to automate thing that deals with structured information that goes into a database. If you deliberation astir CRM systems, ERP systems, HR systems, we’ve already had years of automation successful that space. But wherever we’ve ne'er had automation is thing that touches unstructured data. 

Techcrunch event

San Francisco | October 27-29, 2025

Think astir immoderate benignant of ineligible reappraisal process, immoderate benignant of selling plus absorption process, immoderate benignant of M&A woody reappraisal — each of those workflows woody with tons of unstructured data. People person to reappraisal that data, marque updates to it, marque decisions and truthful on. We’ve ne'er been capable to bring overmuch automation to those workflows. We’ve been capable to benignant of picture them successful software, but computers conscionable haven’t been bully capable astatine speechmaking a papers oregon looking astatine a selling asset.

So for us, AI agents mean that, for the archetypal clip ever, we tin really pat into each of this unstructured data.

TC: What astir the risks of deploying agents successful a concern context? Some of your customers indispensable beryllium tense astir deploying thing similar this connected delicate data.

Levie: What we’ve been seeing from customers is they privation to cognize that each azygous clip they tally that workflow, the cause is going to execute much oregon little the aforesaid way, astatine the aforesaid constituent successful the workflow, and not person things benignant of spell disconnected the rails. You don’t privation to person an cause marque immoderate compounding mistake where, aft they bash the archetypal mates 100 submissions, they commencement to benignant of tally wild.

It becomes truly important to person the close demarcation points, wherever the cause starts and the different parts of the strategy end. For each workflow, there’s this question of what needs to person deterministic guardrails, and what tin beryllium afloat agentic and non-deterministic. 

What you tin bash with Box Automate is determine however overmuch enactment you privation each idiosyncratic cause to bash earlier it hands disconnected to a antithetic agent. So you mightiness person a submission cause that’s abstracted from the reappraisal agent, and truthful on. It’s allowing you to fundamentally deploy AI agents astatine standard successful immoderate benignant of workflow oregon concern process successful the organization.

A visualization of the Box Automate workflowA Box Automate workflow, with AI agents deployed for circumstantial tasks. Image Credits: Box

TC: What benignant of problems bash you defender against by splitting up the workflow?

Levie: We’ve already seen immoderate of the limitations adjacent successful the astir precocious afloat agentic systems similar Claude Code. At immoderate constituent successful the task, the exemplary runs retired of context-window country to proceed making bully decisions. There’s nary escaped luncheon close present successful AI. You can’t conscionable person a long-running cause with unlimited discourse model spell aft immoderate task successful your business. So you person to interruption up the workflow and usage sub-agents.

I deliberation we’re successful the epoch of discourse wrong AI. What AI models and agents request is context, and the discourse that they request to enactment disconnected is sitting wrong your unstructured data. So our full strategy is truly designed to fig retired what discourse you tin springiness the AI cause to guarantee that they execute arsenic efficaciously arsenic possible.

TC: There is simply a bigger statement successful the manufacture astir the benefits of big, almighty frontier models compared to models that are smaller and much reliable. Does this enactment you connected the broadside of the smaller models?

Levie: I should astir apt clarify: Nothing astir our strategy prevents the task from being arbitrarily agelong oregon complex. What we’re trying to bash is make the close guardrails truthful that you get to determine however agentic you privation that task to be.

We don’t person a peculiar doctrine arsenic to wherever radical should beryllium connected that continuum. We’re conscionable trying to plan a future-proof architecture. We’ve designed this successful specified a mode where, arsenic the models amended and arsenic agentic capabilities improve, you volition conscionable get each of those benefits straight successful our platform.

TC: The different interest is information control. Because models are trained connected truthful overmuch data, there’s a existent fearfulness that delicate information volition get regurgitated oregon misused. How does that origin in?

Levie: It’s wherever a batch of AI deployments spell wrong. People think, “Hey, this is easy. I’ll springiness an AI exemplary entree to each of my unstructured data, and it’ll reply questions for people.” And past it starts to springiness you answers connected information that you don’t person entree to oregon you shouldn’t person entree to. You request a precise almighty furniture that handles entree controls, information security, permissions, information governance, compliance, everything. 

So we’re benefiting from the mates decades that we’ve spent gathering up a strategy that fundamentally handles that nonstop problem: How bash you guarantee lone the close idiosyncratic has entree to each portion of information successful the enterprise? So erstwhile an cause answers a question, you cognize deterministically that it can’t gully connected immoderate information that that idiosyncratic shouldn’t person entree to. That is conscionable thing fundamentally built into our system.

TC: Earlier this week, Anthropic released a caller diagnostic for straight uploading files to Claude.ai. It’s a agelong mode from the benignant of record absorption that Box does, but you indispensable beryllium reasoning astir imaginable contention from the instauration exemplary companies. How bash you attack that strategically?

Levie: So if you deliberation astir what enterprises request erstwhile they deploy AI astatine scale, they request security, permissions and control. They request the idiosyncratic interface, they request almighty APIs, they privation their prime of AI models, due to the fact that 1 day, 1 AI exemplary powers immoderate usage lawsuit for them that is amended than another, but past that mightiness change, and they don’t privation to beryllium locked into 1 peculiar platform.

So what we’ve built is simply a strategy that lets you person efficaciously each of those capabilities. We’re doing the storage, the security, the permissions, the vector embedding, and we link to each starring AI exemplary that’s retired there.

Read Entire Article