AI SECURITY • 333 / 397
Understand how untrusted text, tools and autonomy create new attack paths.
Workflow Guardrail
A workflow guardrail constrains loops, retries, spend, scope or execution paths.
Think of it like
Think of Workflow Guardrail as an input-trust or privilege problem: words can influence software decisions, so boundaries must be explicit.
Real life
Email, documents and web pages can become hostile inputs to AI systems through attacks involving Workflow Guardrail.
SRE lens
Maximum 10 steps and no production action without approval.
Remember thisA workflow guardrail constrains loops, retries, spend, scope or execution paths.