
Model LLM Agent Permission Risk: Compare Scope, Impact, and Reversibility
Two permission grants land on the review table. One lets the agent read every ticket and send email. The other lets it read assigned tickets and draft…
Read tutorialThe interface and control flow through which an LLM proposes a tool action and an application validates, executes, and handles its result.
Tagged articles
12 articles in this tag.

Two permission grants land on the review table. One lets the agent read every ticket and send email. The other lets it read assigned tickets and draft…
Read tutorial
The moment you give an agent a tool, you stop deciding what it does and start deciding what it is allowed to do. The real design question is not "can the…
Read tutorial
The agent worked in the demo. Then you ran it on your own task, and it called a tool you never expected — or kept calling tools after the answer was…
Read tutorial
Your agent runs. It calls tools. It produces output. And yet, something is wrong—or it never stops running at all. The frustrating part is that you can't…
Read tutorial
Frameworks change. The model underneath them doesn't. Learn the mechanism first, and every new tool becomes just another wrapper around something you…
Read tutorial
That single distinction separates a demo from a system. When you chat with an LLM directly, you are the pipeline: you judge the output, check the facts,…
Read tutorial
When people first hear that an LLM can "use tools," they usually picture the model reaching out and doing something itself—searching the web, running code,…
Read tutorial
A tool call returns status: "ok". The pipeline moves on. Nobody notices that the result answers a slightly different question than the one the model asked.
Read tutorial
A proposed tool call sits on your screen: send the summary to the client. You have a policy document open in another tab. Is this allowed, does it need…
Read tutorial
Most beginners expect an agent to be a special kind of model—something with built-in magic that can browse the web, run code, and get things done. Then…
Read tutorial
Structured output and tool calling look almost identical from the outside. Both accept a JSON schema. Both return clean key-value pairs instead of…
Read tutorial
That gap is not bad luck. It is a missing model. Most beginners picture tool calling as a straight line: ask, call, answer. That picture is accurate for…
Read tutorial