July 2026Unreviewed
How Agents Ask for Permission: User Permissions for AI Agents, from Interfaces to Enforcement
Alexandra E. Michael, Franziska Roesner
Abstract
As AI agents gain prevalance, users are increasingly exposed to the risks such systems entail. Prompt injection attacks, as well as hallucination, can cause agents to leak private information to third parties. As autonomous systems, agents also present the more active danger of performing sensitive tasks, such as bank transactions, without the user's intent or authorization. Recognizing this challenge, the agentic security community has developed numerous proposals for secure agentic systems. Mu
Categories
Framework mappings
OWASP Top 10 for LLM Applications
- LLM01Prompt Injection
MITRE ATLAS
- AML.T0051LLM Prompt Injection
Suggested from the entry's categories.
Cite
@misc{michael2026how,
title = {{How Agents Ask for Permission: User Permissions for AI Agents, from Interfaces to Enforcement}},
author = {Alexandra E. Michael and Franziska Roesner},
year = {2026},
month = jul,
eprint = {2607.13718},
archivePrefix = {arXiv},
url = {https://arxiv.org/abs/2607.13718}
}