Reported OpenAI agent scanning shifts the risk conversation
The issue is no longer just bad answers. It is agents taking too many actions too quickly.
The Verge reports that OpenAI agents scanned the UN Conference on Trade and Development statistics site more than 16,000 times between April and June, according to security researcher Rowan Howard-Jones. Treat this as reported, not settled. The useful shift is clear: agent safety now includes traffic volume, destination control, and rate limits, not only prompt rules. Anthropic’s engineering index is also pointing at the same operating question with a piece on containing Claude across products and capping blast radius. For daily work, the lesson is simple: any agent that can browse, call tools, or touch a repo needs a written boundary before it starts.