All videosOther topics0:36

Tools, permissions, approvals, and trust boundaries

Model intent creates effects only after independent validation, policy, approvals, sandbox, and external authority boundaries.

Links containing ?t= open the video at a specific second.

Video summary

The ideas to retain

01

The right question is not “which tools does the agent have?”

There are at least six separate control planes:

02

Tool availability and permission are different controls

Reducing the tool catalog visible to the model is valuable. It shrinks the action space the model can choose from and avoids pointless attempts.

03

Policy must live outside model inference

An instruction such as:

Key moments

Jump directly to a section

  1. A tool call is not authorization
  2. Untrusted input, bounded capability
  3. Project secrets without placing them in context