“Excessive Agency enables damaging actions to be performed in response to unexpected, ambiguous, or manipulated outputs from an LLM, regardless of what is causing the LLM to malfunction.”
Excessive agency occurs when an AI system has more autonomy, permissions, tools, or action scope than the task requires.
LLM06 is not about the model making wrong decisions. It’s about the system around the model granting it too much power. The model can be working exactly as intended — and still cause serious damage if it has capabilities it shouldn’t.