Hacker News new | ask | show | jobs
by jvwww 290 days ago
Feels pretty easy to mitigate against. If a user deselects "allow email sending", then you can just remove that as a possible tool-call so it becomes impossible.