Hacker News new | ask | show | jobs
by lifthrasiir 14 days ago
I think it is already done via a subagent, otherwise the context window would be flooded with long responses. In this case the subagent should've reported that a (attacker-controlled) authorization is required anyway.