Per-action approval and audit for autonomous AI agents
Teams hand autonomous agents broad API tokens, so a single prompt-injection or reasoning error lets the agent send refunds, delete records, or email customers with no scoped approval or audit trail per action.
Agent security and authorization infrastructure / 55% confidence / high Open report