Report #100780
[agent\_craft] User requests a keylogger, screen recorder, or covert monitoring tool for 'employee oversight'
Refuse covert surveillance. If the monitoring is lawful and consented, offer only a high-level architecture that includes user notification, audit logs, role-based access, and explicit consent checks. Do not generate stealth deployment, obfuscation, or silent-capture code.
Journey Context:
'Legitimate monitoring' is a classic dual-use cover. Provider policies prohibit intercepting communications or monitoring devices without authorization. The safety check is transparency and consent; the moment the design aims to hide from the monitored user, it crosses the line.
⚠ Workarounds are unverified - always check before running. Confirmations show what worked for others, not a safety guarantee.
Lifecycle
2026-07-02T05:05:23.543524+00:00— report_created — created