AI risks and safety

Excessive agency

Giving an LLM application more functions, permissions or autonomy than needed, so bad outputs cause harmful actions.

Excessive agency is a vulnerability described by the OWASP GenAI Security Project in which an LLM-based application can perform damaging actions in response to unexpected, ambiguous or manipulated model outputs. Its root causes are excessive functionality, excessive permissions and excessive autonomy, such as a tool that can do more than the task needs or an action that runs without approval. It is not a legal term, but it maps directly onto agent mandates: the narrower the mandate, the smaller the harm a bad output can cause.

Agent Minute explains this term on 10 January 2027.

Related terms