Where do you stop trusting an AI agent with write access to Salesforce, SAP and Jira?
ken_kauneki10 · reddit · 2026-09-16
The author raises a pressing question as agents move from read-only analysis to actually performing actions: where do you stop trusting an agent with direct API access? When one agent can write to Salesforce, SAP, Slack and Jira, the options include granting it its own permissions, inheriting the user's permissions, adding human approval before destructive actions, or hard-restricting tools. The thread asks practitioners which API actions should never run without human sign-off.
More from coding & agent
- AgentIR embeds agent reasoning traces into retrieval, plus a BrowseComp-Plus benchmark — CShorten30 · 2026-09-16
- AI Evals FAQ grows to 48 Q&As: sensitive data, huge traces, and stale gold datasets — HamelHusain · 2026-09-16
- One prompt to a real object: AI agent models in Blender and 3D-prints the result — anthara_ai · 2026-09-16
- Open-source crew of 8+ AI agents manages your Obsidian vault, email triage included — tom_doerr · 2026-09-16
- AI agent gets user's $70 Amazon credit after weeks of runaround, one tap needed — armand_ruiz · 2026-09-16
- 3 weeks through Stanford CS329A: the generator has outrun the verifier — le_james94 · 2026-09-16