Permissions
Checks whether the agent has more access than its task requires.
Review tool trust, server permissions, dynamic discovery, secrets, supply-chain exposure and action validation.
Checks whether the agent has more access than its task requires.
Reviews how external content can influence tools and actions.
Measures approval gates, limits and potential blast radius.
Evaluates logging, testing and incident containment.