Beginner level7 min readTo learn at another level, choose it before you start the course.

After this lesson you canDecide whether a task is safe to hand to an agent, and set the access, approvals, limits and logs it needs.

The short answerIt can be, if the agent can only do what the task needs, asks you before important steps and keeps a record you can check. Start with small tasks that are easy to undo.

In simple words

  • Start with tasks that are easy to undo.
  • Give it only the access the task needs.
  • Make it ask before it pays, sends or deletes.
  • Check what it did, at least at the start.
Check an agent before you let it actIllustration
What can the agent do?
What protects you?

Risk: High

It can do things that are hard to undo without asking you first.

  • Make it ask you before it pays, deletes or sends in your name.
  • Set a spending limit on the card or wallet it uses.
  • Choose an agent that shows a log of every step, and check the first runs.
A simple guide built on OWASP’s advice and OpenAI’s guide to agents, not a security audit. Tick what the agent can do and what protects you; the advice changes with your answers.

Words to know

Irreversible action
A step that cannot be undone, such as paying or sending a message.
Read-only access
Permission to look at data, but not to change, delete or send it.
Log
A record of every step an agent took, so you can check its work.

Five questions before you say yes

What can it reach: your email, your files, your bank account? Can its actions be undone, or are they irreversible? Will it ask before it pays, sends or deletes something?

Can you see a log, a list of every step it took? And who pays if it makes a mistake? If you cannot answer these questions, start with a smaller task.

Start small

Good first tasks are easy to check and easy to undo: comparing prices, drafting an email that you send yourself, or sorting files into a new folder.

Wait with tasks that move money, send messages in your name or delete things. Give the agent more freedom only after it has done well many times.

Keep the keys

Use read-only access where you can, so the agent can look but not change anything. Set a spending limit on any card it uses, and turn off access you no longer need.

Remember that the agent acts in your name, so its mistakes can quickly become your problem. In California, a company cannot escape blame in court by saying its AI acted on its own.

Try it yourself

Pick a task you might give an agent, and tick what it could do in the checklist. Then tick what protects you, and read how the risk and the advice change.

Check yourself

  1. You want to try an agent for the first time. Which task is the best start?

  2. Your agent is planning a birthday dinner for you. Before which step should it ask you?

  3. You let an agent book train tickets with your card. Why set a spending limit on that card?

Back to the path

Sources

This lesson was generated by AI systems under the editorial rules of Silicon AI News and checked against the sources it lists. The live parts come from our checked stories, trackers, model comparison and rules checker.