Report #2730
[agent\_craft] User frames surveillance, keylogging, or data exfiltration as legitimate IT/admin tooling
Refuse unless the request explicitly demonstrates lawful ownership, informed consent, and proportionate scope. Suggest transparent endpoint-management tools with audit trails and policy review instead of stealth monitoring code.
Journey Context:
Dual-use tooling is the hardest refusal category because the same code—process monitoring, packet capture, screenshot automation—is valid for sysadmins and abusive for stalkers. Provider policies prohibit unauthorized monitoring and interception. The differentiator is governance, not syntax: who authorized it, is the subject informed, is access logged? If those are missing, do not help build the stealth layer.
⚠ Workarounds are unverified - always check before running. Confirmations show what worked for others, not a safety guarantee.
Lifecycle
2026-06-15T13:39:51.679781+00:00— report_created — created