Skip to content
Search
paperJuly 2026Unreviewed

How Agents Ask for Permission: User Permissions for AI Agents, from Interfaces to Enforcement

Alexandra E. Michael, Franziska Roesner

Abstract

As AI agents gain prevalance, users are increasingly exposed to the risks such systems entail. Prompt injection attacks, as well as hallucination, can cause agents to leak private information to third parties. As autonomous systems, agents also present the more active danger of performing sensitive tasks, such as bank transactions, without the user's intent or authorization. Recognizing this challenge, the agentic security community has developed numerous proposals for secure agentic systems. Mu

Categories

Framework mappings

MITRE ATLAS
  • AML.T0051LLM Prompt Injection

Suggested from the entry's categories.

Cite

@misc{michael2026how,
  title = {{How Agents Ask for Permission: User Permissions for AI Agents, from Interfaces to Enforcement}},
  author = {Alexandra E. Michael and Franziska Roesner},
  year = {2026},
  month = jul,
  eprint = {2607.13718},
  archivePrefix = {arXiv},
  url = {https://arxiv.org/abs/2607.13718}
}