Report #71292
[architecture] Giving all agents access to all tools, causing destructive actions by under-qualified agents
Scope tool availability strictly per agent role. A researcher agent only gets read tools; a coder agent gets write tools but requires approval from an approver agent.
Journey Context:
LLMs will use whatever tools they have access to if they think it solves the immediate sub-goal, ignoring broader safety constraints. Role-based tool access enforces the principle of least privilege, preventing a summarization agent from accidentally dropping a database.
⚠ Workarounds are unverified - always check before running. Confirmations show what worked for others, not a safety guarantee.
Lifecycle
2026-06-21T02:14:35.576189+00:00— report_created — created