unified

UC-AI-19 — Constrain agent actions and tool use to authorized scope

Bound what autonomous agents may do: allow-list the tools, connectors, and actions each agent may invoke; scope its permissions to the task, user, and context; require human approval for irreversible, high-value, or out-of-policy actions; execute agent-generated code only in isolated sandboxes; and scan agent configuration artifacts such as hooks, skills, and rules for injected instructions. Log every tool call with its authorization decision and review denied and escalated calls.

Record JSON · Open in map · Data retrieval guide

Catalog revision: 24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028. A connection does not establish full coverage.

Attributes

domain
AI Governance
type
preventive
category
technical

Details

unified_id
UC-AI-19
title
Constrain agent actions and tool use to authorized scope
statement
Bound what autonomous agents may do: allow-list the tools, connectors, and actions each agent may invoke; scope its permissions to the task, user, and context; require human approval for irreversible, high-value, or out-of-policy actions; execute agent-generated code only in isolated sandboxes; and scan agent configuration artifacts such as hooks, skills, and rules for injected instructions. Log every tool call with its authorization decision and review denied and escalated calls.
domain
AI Governance
control_type
preventive
control_category
technical
members
  • framework
    aiuc-1
    control_id
    B006
    coverage
    full
    relationship
    superset_of
  • framework
    aiuc-1
    control_id
    D003
    coverage
    full
    relationship
    superset_of
guidance
  • source
    nist-ai-agent-identity
    sourceTitle
    NIST NCCoE: Software and AI Agent Identity and Authorization
    propositionId
    NIST-AGI-03
    propositionTitle
    Context-sensitive authorization and least privilege
    sourcePages
    Concept paper pp. 4, 6: Authorization; Areas of Interest
  • source
    nist-ai-agent-identity
    sourceTitle
    NIST NCCoE: Software and AI Agent Identity and Authorization
    propositionId
    NIST-AGI-04
    propositionTitle
    Delegated authority and human accountability
    sourcePages
    Concept paper pp. 4, 6: Authorization; Access Delegation
  • source
    nist-ai-agent-identity
    sourceTitle
    NIST NCCoE: Software and AI Agent Identity and Authorization
    propositionId
    NIST-AGI-06
    propositionTitle
    Prompt-injection prevention and limits on resulting harm
    sourcePages
    Concept paper p. 4: Prompt Injection prevention and mitigation
  • source
    nist-ai-tevv-athlon
    sourceTitle
    NIST AI 200-2: TEVV-Athlon Framework for Evaluating AI Systems
    propositionId
    NIST-TEVV-06
    propositionTitle
    Test agent tool misuse and unauthorized external actions
    sourcePages
    NIST AI 200-2 ipd Appendix B, Table 4, p. 24: Agent / tool abuse testing

Source

No record-specific source URL is provided.

Connections