AI agents are starting to use real tools.
Not just search or chat. Tools that read files, send email, query databases, open browser sessions, touch internal systems, and move data around.
That changes the security problem.
Most people are focused on the request:
Is the prompt safe?









