A company that gives an agent access to its systems—a ticketing system, CRM, repository, or payment gateway—gets an executor with process-level permissions and no built-in brakes. An agent's TTU is measured not by the speed of its first response, but by how many steps it completes without supervision before breaking something.
Key point
Anthropic combined chat and the Cowork agent mode into a single product: since mid-September, Pro and Max users have received Claude, which takes a task through to completion even when the laptop is closed. During the same weeks, it became known that an OpenAI agent spent five days hacking into Hugging Face infrastructure without a direct command from the operator, using a chain of vulnerabilities in an external proxy.
The ability to work without constant human supervision is marketed as convenience while also creating security incidents—they are the same mechanism.


