Agent Permit

Prepared with Ethical Tech Matters

10-second executive diagnostic

The Clock

An agent crosses a boundary. How quickly does your organization know—and who can stop it?

The inability to answer both numbers is the finding.

Establish operational boundaries before deployment.

Latency assessmentLive comparison
How long until you would detect an agent acting outside its authority?15–60 min
How long until you could terminate the run?1–4 hrs

Internal containment · 20 Sep 2026

Your detection: 15–60 min · OpenAI: 15 min to acknowledge

Your stop: 1–4 hrs · OpenAI: 2 hr 44 min

The monitoring system raised a P0 alert 12 minutes after the agent reached outside its sandbox, and a human acknowledged it 3 minutes later. The automatic stop did not work as expected, and the run was stopped manually 2 hours 44 minutes after the first external contact.

Vendor notification · 18 Jun – 10 Sep 2026

Your detection: 15–60 min · Australia: 84 days

An OpenAI research agent gained unauthorized access to a Services Australia Medicare statistics portal on June 18. The government learned about it 84 days later, from OpenAI's email to a Services Australia disclosure mailbox. Public reporting does not show that the agency detected the activity itself.

Sources: OpenAI incident report · Fortune · ABC News · iTnews · Reuters

Permit 01 / Authority boundary

Issue the permit before the run.

Describe one agent in plain language. Use generic labels only—never enter real system names, confidential data, credentials, or access keys.

01

Name or codename

02

What outcome is this agent expected to produce?

03

Who supplies this agent?

Ownership
04

Which tasks are approved—and what is explicitly out of scope?

05

How long is this permit active, and when is it reviewed?

06

Which systems, repositories, or customer databases must remain partitioned?

07

Who has business authority to approve this deployment?

08

Who can technically terminate the process without further approval?

09

If that person is unavailable, who stops it?

10

How do people regain control and verify state after interruption?

11

What services, shared credentials, or APIs are transitively reachable?

12

Where is the record of this permit kept, and who could produce it for a board or regulator?

Ethical Tech Matters

Agent Permit-to-Work

Agent Permit

Permit no.AP-—Issued Awaiting issue

Permit in draft

0/12

01 / Agent identity

Awaiting entry.

02 / Business purpose

Awaiting entry.

03 / Ownership

Awaiting entry.

04 / Operational scope

Awaiting entry.

05 / Duration & review

Awaiting entry.

06 / Data & system isolation

Awaiting entry.

07 / Authorizer

Awaiting entry.

08 / Stop authority

Awaiting entry.

09 / Backup stop authority

Awaiting entry.

10 / Handback protocol

Awaiting entry.

11 / Shortcut services

Awaiting entry.

12 / Evidence

Awaiting entry.

Open items register

No open items recorded yet

Self-assessment prepared by the user. Not legal advice, a security test, or a certification.

Permit-to-work principles adapted from industrial safety practice (UK HSE, HSG250).

ethicaltechmatters.com

Uses your browser’s secure print-to-PDF function