AI Agents

How to secure an AI agent’s tool permissions

Apply least privilege and explicit approval boundaries to agent actions.

Problem

AI-generated code often optimizes for getting the happy path working. Production systems also need explicit behavior for failures, limits, security boundaries, and operations.

Why it matters

This pattern reduces avoidable outages and makes system behavior easier to understand when dependencies become slow, unavailable, or unpredictable.

Production pattern

allow_tools = {"search_docs", "create_draft"}

Common mistakes

  • Assuming default framework behavior is production-safe.
  • Ignoring failure and recovery paths.
  • Logging sensitive values while debugging.
  • Adding complexity without monitoring it.

AfterCode checklist

  • Define expected behavior.
  • Test success and failure cases.
  • Add observable signals.
  • Document operational ownership.

Next step

Run the broader production checklist to find adjacent risks around this pattern.

Open production checklist