Excessive Agency

Hunt LLM excessive agency (OWASP LLM06:2025) — agentic systems granted too many tools, too broad permissions per tool, or unsupervised authority to act on the user / business behalf, producing financial loss, data loss, or destructive operations from a single bad token.

purpleailab c949c45 5.6 KB Updated

File contents

purpleailab/decepticon/tree/main/packages/decepticon/decepticon/skills/standard/analyst/excessive-agency commit c949c4513e

Frequently asked questions

npx skillmds@latest add purpleailab/excessive-agency