- AI agent authorization
- Deciding whether an AI agent may take a specific action, for a specific task, at a specific moment — and enforcing that decision.
- Consequential action
- An agent action with real-world effect: changing code, infrastructure or data, exposing information or spending money.
- Exact-action approval
- Human approval that covers one specific action. If anything material changes, the approval no longer applies.
- Delegated authority
- The limited set of things an agent may do on someone’s behalf. A sub-agent never receives more than its parent.
- Least-privilege access
- Giving an agent only the access it needs, only for as long as it needs it.
- Prompt injection
- Hidden instructions in content an agent reads — a web page, document or tool response — that try to make it act against its user.
- Tool misuse
- An agent using a legitimate tool in a harmful or unintended way.
- Observe-only mode
- Running Authority without blocking anything, to see what it would have allowed, blocked or escalated.
- Kill switch
- An instant stop for an agent, tool, workflow or integration.
- Blast radius
- How much damage a single agent action — or a compromised agent — could cause.
- Cost per successful outcome (CPSO)
- The total cost of an agent workflow divided by its successful outcomes.
- Agent audit trail
- A tamper-evident record of what each agent asked to do, who approved it and what happened.