High-impact tools need stronger confirmation

Not every action an agent can take deserves the same level of approval.

Reading a document and transferring money should not be gated the same way. The practical approach is to tier the tools: routine things happen freely, consequential things require a person to confirm, and irreversible things require a person who has been shown enough to make a real decision. Uniform approval either blocks everything or approves everything, and in practice it approves everything.

More on AI agents