> You have a customer facing LLM that has access to sensitive information…You have an AI agent that can write and execute code.
Don’t do that then?
Seems like a pretty easy fix to me.