Excessive agency expands the blast radius of erroneous or manipulated agent actions. It arises from overly broad tools, elevated permissions, missing approvals, or insufficiently bounded tasks.
Use this profile to understand the building block briefly, place it in the model, and switch to the 360° assessment when needed.
Theoretical construct: explains a term, principle, or mental model.
Concrete cog in the system that works inside larger relationships.
Excessive agency is a system executing more actions or holding more permissions than its task requires and authorizes.
The term was adopted in the security context for agentic systems from the principle of least privilege. OWASP lists excessive agency among the Top 10 risks for large-language-model applications when functions, permissions, or trust assumptions are unnecessarily broad.
Each action needs a bounded capability, controlled scope, and verifiable result. Tools, identities, and approvals together determine an agent’s actual reach.
Excessive agency is a system executing more actions or holding more permissions than its task requires and authorizes. Conceptual starting point.
Each action needs a bounded capability, controlled scope, and verifiable result. Tools, identities, and approvals together determine an agent’s actual reach. Practical guiding question.
Limiting reach reduces misuse and blast radius. Allowlists, least privilege, confirmations for sensitive steps, and logging keep actions controllable.
Limiting reach reduces misuse and blast radius. Allowlists, least privilege, confirmations for sensitive steps, and logging keep actions controllable.
Where this building block is located in the topic model.
No structure path available.
Explore how this building block connects to concepts, methods, technologies, and tools.
These sources establish the term and its professional meaning.
All direct connections of the current building block in a compact text view.
This classification shows where the building block typically matters, how demanding it is, and what kind of impact it has in the model.
The level within the organization (enterprise, domain, team) at which the AssetBlock is applied.