permissions

Tag

Cards List
#permissions

A "secure-ish" Pi setup with permission, sandbox, and auto-review

Lobsters Hottest · 3d ago Cached

A technical guide to hardening the Pi AI agent on a host machine using three extensions that add deterministic permission rules, OS-level sandboxing for shell commands, and automatic review of cross-boundary requests.

0 favorites 0 likes
#permissions

How ready are AI agents for real-world work?

Reddit r/AI_Agents · 3d ago

A discussion of how ready AI agents are for real-world work, covering their current abilities and the key open questions around reliability, permissions, failures, and human oversight.

0 favorites 0 likes
#permissions

AI agents can now operate a social media inbox with real permissions in 2026, tested what that actually means

Reddit r/AI_Agents · 5d ago

PostFast ships an MCP-powered unified inbox that lets Claude read and send replies across TikTok, Instagram, Facebook, and Threads with real write permissions. The author tests it and highlights security concerns, recommending human approval gates for irreversible actions.

0 favorites 0 likes
#permissions

@alex_prompter: Risk level is the wrong way to gate your AI agent's actions. Reversibility is the right one. Most permission systems as…

X AI KOLs Timeline · 6d ago Cached

A design principle for AI agent permission systems: gate actions by reversibility rather than risk, with an autonomy ladder, reversibility tags, and unconditional forcing functions for irreversible actions.

0 favorites 0 likes
#permissions

I don't think one confirmation dialog is enough for a database agent

Reddit r/AI_Agents · 2026-08-07

The author argues that a single confirmation dialog is insufficient for AI database agents, proposing layered approvals based on blast radius and persistent evidence trails for incident review.

0 favorites 0 likes
#permissions

datasette 1.0a38

Simon Willison's Blog · 2026-08-06 Cached

Datasette 1.0a38 fixes a SQL injection vulnerability affecting instances that serve mixed public and private tables, with the fix also backported to Datasette 0.65.3.

0 favorites 0 likes
#permissions

Humans missed 1 in 3 threats approving AI agent commands across 40k game runs

Hacker News Top · 2026-08-06 Cached

A browser game simulating human-in-the-loop approval of AI coding agent commands shows that players miss about 1 in 3 threats on average, with credential-exfiltrating commands missed far more often than destructive ones.

0 favorites 0 likes
#permissions

What’s your actual go/no-go bar before an agent gets real permissions?

Reddit r/AI_Agents · 2026-08-05

An analysis of go/no-go criteria for shipping AI agents with real production permissions, proposing a Green/Yellow/Red status system and arguing that serious failures should block release regardless of average success rates.

0 favorites 0 likes
#permissions

I built an open-source memory layer to stop cross-tenant leaks in AI agents

Reddit r/AI_Agents · 2026-08-04

Verity is a new open-source, permission-aware memory layer for multi-tenant AI agents, preventing cross-tenant data leaks by enforcing access controls directly in retrieval queries rather than relying on model behavior.

0 favorites 0 likes
#permissions

Is AI really the hard part anymore, or is it getting AI to access the right data?

Reddit r/ArtificialInteligence · 2026-08-02

A discussion on whether LLM capability or enterprise data access and permissions is the bigger bottleneck for AI adoption, arguing that content management is becoming as critical as the models themselves.

0 favorites 0 likes
#permissions

agents can run in the background now. what keeps the task from drifting?

Reddit r/AI_Agents · 2026-07-31

Google added background execution and remote MCP support to managed agents, raising concerns about task drift and the need for fresh approvals during long-running work.

0 favorites 0 likes
#permissions

The real AI banking question is permissions, not autonomy

Reddit r/artificial · 2026-07-30

The article argues that practical AI business banking should rely on permissioned roles and limited access rather than full autonomy, with human approval required for large transactions.

0 favorites 0 likes
#permissions

Does anyone actually read the agent permission prompts anymore?

Reddit r/AI_Agents · 2026-07-29

The article highlights the problem of users blindly clicking through permission prompts for coding agents, and presents a fork-based workspace approach (built in Gensee Crate) where agents work on isolated copies, enabling safe experimentation and parallel approaches, though external API calls remain a challenge.

0 favorites 0 likes
#permissions

AI agents are going to need their own payment permissions

Reddit r/AI_Agents · 2026-07-28

As AI agents begin managing subscriptions, cloud resources, and bookings, the article argues that payment permissions need to become as granular as API permissions, questioning whether dedicated credentials or internal approval logic will be used.

0 favorites 0 likes
#permissions

An LLM should never have a direct line to production. We keep four boundaries in between

Reddit r/AI_Agents · 2026-07-24

The article outlines four essential boundaries (identity, intent, policy/execution, system-of-record) to ensure LLMs never have direct access to production systems, preventing irreversible actions. It emphasizes the need for multi-layered permission checks and human approval for risky operations.

0 favorites 0 likes
#permissions

The real bottleneck for AI agents may be proving who they are

Reddit r/artificial · 2026-07-14

The article argues that intelligence is no longer the main bottleneck for AI agents; instead, proving agent identity, permissions, and accountability is the critical challenge before autonomous operation can be trusted.

0 favorites 0 likes
#permissions

I don't think agent wallets should be wallets first

Reddit r/artificial · 2026-07-12

A thought piece arguing that autonomous agents should be given narrow spending permissions per task rather than broad wallet access, framing the problem as one of permissions and failure recovery.

0 favorites 0 likes
#permissions

Codex deleted Matt Shumar's entire home directory

Reddit r/AI_Agents · 2026-07-11

A tweet highlights the danger of AI coding assistants executing dangerous commands like 'rm -rf', referencing an incident where Codex deleted Matt Shumar's home directory due to skipped permissions.

0 favorites 0 likes
#permissions

Those of you running AI agents in prod — how are you actually managing their permissions?

Reddit r/AI_Agents · 2026-07-09

The article asks how engineers manage permissions for AI agents in production, highlighting common problems with broad access and lack of audit trails.

0 favorites 0 likes
#permissions

Google won't let you separate permissions for "drafts" from "send", so I built a (free and open) workaround

Reddit r/openclaw · 2026-07-07

The author built a free and open-source workaround to allow users to separate permissions for drafts from send in Google's system, addressing a limitation in Google's permission model.

0 favorites 0 likes
Next →
← Back to home

Submit Feedback