The default in every agent tool is "ask permission for everything." That feels r
By John Aspinall ✱ · May 29, 2026 · Curated by George's Blog
The default in every agent tool is "ask permission for everything."
That feels responsible.
But honestly?
It's the wrong default for the way most people use these things.
Here's the failure mode no one talks about:
You kick off an agent. You walk away.
You come back two hours later expecting a finished report.
Instead it's been sitting there since minute four, waiting for you to click yes on a permission popup.
You just lost two hours to a safety feature you never needed.
The risk model people imagine:
Agent deletes my files, sends a bad email, drops a table.
The risk model that actually shows up:
Agent freezes on a Drive read permission & your whole evening is wasted.
For background runs of report generation, file organization, content drafts, ClickUp updates → the destructive ceiling is low.
The cost of asking is high.
For anything touching production code, billing, or outbound comms → keep the permission wall up.
Know which workflows to unlock.
Treat it like a per-task call, not a global setting.
Curious how I know this?
⤷ Ask me.