Permissions
Checks whether the agent has more access than its task requires.
Measure transaction controls, reconciliation, approval thresholds, credentials and maximum-loss boundaries.
Checks whether the agent has more access than its task requires.
Reviews how external content can influence tools and actions.
Measures approval gates, limits and potential blast radius.
Evaluates logging, testing and incident containment.