Autonomous Decision Making
Medium
- Category
- Excessive Agency
- Content
- the user did not authorize a risky action, - the target scope is ambiguous, - the tool could harm unrelated files, accounts, systems, or people, - the action would bypass consent, policy, review, or safety boundaries, - the request involves credential theft, fraud, evasion, harassment, exfiltration, or unauthorized access, - a qualified professional, administrator, or verified system must review the action first.
- Confidence
- 85% confidence
- Finding
- Skill enables autonomous high-impact decisions without human-in-the-loop verification. Critical operations (destructive commands, financial transactions, data deletion) should require explicit user confirmation.
