Mitigations also need to happen on the client side.
If you have a AI that automatically can invoke tools, you need to assume the worst can happen and add a human in the loop if it is above your risk appetite.
It's wild how many AI tools just blindly invoke tools by default or have no human in loop feature at all.
replies(1):