I am about to give an always-on AI agent access to the accounts listed below.<br/><br/>For each one, tell me the worst thing that could happen if the agent acted wrongly with it - not the likely thing, the worst one. Cover money moved, data exposed, messages sent in my name, and anything that cannot be undone.<br/><br/>Then sort the accounts into three tiers:<br/>1. Recoverable in minutes<br/>2. Recoverable with effort<br/>3. Not recoverable<br/><br/>Tell me plainly which tier 3 accounts I should not connect at all.<br/><br/>ACCOUNTS:<br/>[list them]
Here is what I want an AI agent to do for me.<br/><br/>Split every task into the part that only needs to READ and the part that needs to ACT.<br/><br/>For each acting step, tell me whether it genuinely needs to happen autonomously or whether it could stop and wait for one click from me. Be strict - "it would be slower" is not the same as "it needs to".<br/><br/>Then give me the smallest set of write permissions that still makes this useful.<br/><br/>TASKS:<br/>[describe them]
I want an agent to handle [task] but I want to approve certain actions before they happen.<br/><br/>Write me the rules for when it must stop and ask, specific enough that they could be implemented rather than just believed. Base them on things that can actually be checked: amount thresholds, recipients not seen before, anything irreversible, anything outside working hours, anything touching a new account.<br/><br/>Then tell me which rules will fire so often that I will start approving without reading - because a gate everyone waves through is worse than no gate, it just moves the blame.
Assume the agent has been running for three months with the access below, and I now need to cut it off immediately.<br/><br/>Give me the exact steps in order, fastest first. Include every place a credential or token might persist after the obvious revoke: saved sessions, OAuth grants, API keys, app passwords, connected devices.<br/><br/>Tell me what the agent could still do after step 1, after step 2, and so on, until the answer is nothing.<br/><br/>ACCESS:<br/>[list]
Below is a log of actions an AI agent took on my behalf.<br/><br/>Group them into: things I asked for, things that followed reasonably from what I asked for, and things I did not anticipate.<br/><br/>For the third group, work out what the agent inferred to get there, and tell me whether that inference was reasonable.<br/><br/>Flag anything that touched an account, contact or system outside the scope I set - even if the outcome was fine.<br/><br/>LOG:<br/>[paste]
An always-on agent working for me will eventually do something wrong. Help me decide, in advance, what happens then.<br/><br/>Answer four things:<br/>1. How would I find out - what would surface it, and how long would that take?<br/>2. What is my first action, before diagnosing anything?<br/>3. Who else needs telling, and how fast, if it touched their data or sent something in my name?<br/>4. What would have to go wrong for me to stop using it entirely, rather than tightening a setting?<br/><br/>Question 4 in particular: give me a concrete threshold, not a feeling.<br/><br/>CONTEXT:<br/>[what the agent does for you]