Suppose you granted your agent read permissions only, yet it attempts to dispatch an email anyway. Vic intervenes to halt this activity long before the command ever reaches Gmail.
Regardless of how persistently the agent repeats the request, the system delivers an automated and definitive denial. Every single unauthorized action is stopped completely and without exception.
https://www.civic.com/news/agent-security-layer