AI SECURITY • 346 / 397
Understand how untrusted text, tools and autonomy create new attack paths.

Excessive Agency

Excessive agency means giving an AI more autonomy, permissions or action scope than necessary.

Think of it like

Think of Excessive Agency as an input-trust or privilege problem: words can influence software decisions, so boundaries must be explicit.

Real life

Email, documents and web pages can become hostile inputs to AI systems through attacks involving Excessive Agency.

SRE lens

An assistant that only needs to diagnose should not automatically restart production.

Remember thisExcessive agency means giving an AI more autonomy, permissions or action scope than necessary.
AIForSREJump to a concept
Search is optional. The main journey is simply ↓ Next.