The most annoying bug in my local AI assistant was not that it refused to ask for permission.

It was that it asked too often.

I would give it a normal task like "read this PDF and tell me what is inside." The assistant would make a reasonable first move, ask for approval, run the command, and then immediately ask again for the next tiny probe.

One task turned into a permission treadmill.

The approval loop felt safe but unusable