
Enterprises are granting AI agents more autonomy. This raises the question of stopping unauthorized actions.
Responsibility lies with the enterprise. Governance must live in the data layer.
Rules need context, as shown by the car door example.
What happened
Enterprises are giving AI agents more autonomy to plan, decide, and act without human approval, raising the question of what stops an unauthorized action.
Why it matters
Responsibility for agent actions sits with the enterprise, and abstract policies aren't enough; rules must be applied in the context of the moment.
What to watch
Governance must live in the data layer, where the context of each action can be assessed, as illustrated by the rule 'never open the car door' being context-dependent.
Ask the AI about this article →
The article argues that as AI agents gain autonomy, governance must shift from abstract policies to the data layer, where the context of each action is known. The car door example illustrates that rules without context can be counterproductive, and agents lack the judgment to override them. This implies that effective governance requires real-time, context-aware enforcement, likely embedded in the infrastructure where data and actions occur. The stakes are high because enterprises bear the responsibility for agent actions, and this cannot be managed in hindsight. The shift to data-layer governance suggests a need for technical solutions that can evaluate actions against dynamic rules, rather than static policies.
For example, today's edition would include:
AI-summarized, only the topics you pick — one digest a day via Email, Slack, or Discord.
Free · takes 30 seconds · unsubscribe anytimeWhat is AIToday? →
Ask AI anything about this article. Q&As are published on this page for other readers too.
A UK study by UK AI Security Institute and Limbic AI surveyed 6,474 British adults

Broadcom's Clayton Donley says companies are doing mission-critical work with AI agents quickly, but without t…
Bank of England governor Andrew Bailey warned that advanced AI poses risks to financial infrastructure in a le…
As AI agents perform real business tasks, 'Agentic Identity' (giving each AI a unique employee-like ID) and 'D…

Andrew Bailey, head of the world's financial stability watchdog, warned in a letter to G20 finance ministers a…

Fortinet announced the acquisition of Virtue AI, a move aimed at expanding its AI security capabilities
