Issue
Tool Can Act Without Responsible Authority
A tool, connector, function, or integration can perform an action without a declared responsible authority for that action.
What This Looks Like
A tool, connector, function, or integration can change state, send data, update records, trigger workflows, or perform actions without a clear responsible authority. The tool may be callable by an agent, but the system does not declare who owns the action, who approved it, or who can reverse it.
Why It Matters
Tools turn AI decisions into operational effects. If a tool can act without responsible authority, the workflow may allow state changes without accountability. This creates risk around permissions, approvals, audit trails, and recovery when something goes wrong.
Structural Signal
A tool action exists without a connected authority owner. The issue is not only that the tool can act; it is that the action is not governed by a declared approval or responsibility structure.
Common Triggers
- Tool access is granted broadly without action-level ownership
- The tool schema declares what can be done but not who authorizes it
- Agent permissions are inherited from a workspace or account
- Tool calls can modify state without a review gate
- Audit metadata records execution but not responsible authority
- The workflow treats tool availability as permission to act
When to Use This Issue
Use this Issue when a tool, connector, function, or integration can perform an action without a declared responsible owner, authority, or approval path.
When Not to Use This Issue
Do not use this Issue when the tool fails because of missing inputs or wrong schema. Do not use it when the authority is declared and the tool simply executes incorrectly.
Category
Primary Pattern
Declared Patterns
Missing Authority
A structural condition where a region, action, state, or decision path exists without a declared governing authority.
Undeclared Side Effect
A structural condition where an operation modifies regions outside its declared target scope without a declared propagation or side-effect rule.
Interface Mismatch
A structural condition where observed interface behavior, shape, or exchange differs from the declared interface contract.
Derived Primary Lenses
Absence Lens
Detects structurally required elements that are missing from the observed structure.
Authority Overlay Lens
Maps declared authority hierarchies onto observed structure to detect absence, override, or conflict.
Interface Contract Lens
Compares declared interface structure to observed runtime structure to detect contract deviations.
Overreach Lens
Detects structure that exceeds declared scope or authority reach.
Propagation Lens
Traces how structural declarations, effects, or state changes propagate across boundaries or stages.
Derived Secondary Lenses
Conflict Lens
Detects mutually incompatible constraints, claims, states, or declarations that cannot be simultaneously satisfied.
Isolation Boundary Lens
Evaluates whether structural constraints, effects, and regions remain contained within declared boundaries.
Normalization Lens
Transforms structurally equivalent variants into a canonical form to prevent false divergence.
Reconciliation Lens
Evaluates whether structural changes align with declared authority updates, version changes, or reconciliation rules.
Related AI-Adjacent Issues
Too Many Workflows Depend on One Tool
Many workflows, agents, checks, or downstream paths depend on one tool, connector, API, or integration, creating a shared point of failure.
Tool Effect Crosses Target Boundary
A tool, connector, function, or integration affects an object, file, record, workspace, or state surface beyond the intended target.
Search Intents
- tool can act without responsible authority
- AI tool has no responsible authority
- tool action lacks owner
- MCP tool can act without approval
- connector action has no authority
- tool permission without responsibility