Consequence gate
Can this AI action send, submit, buy, delete, change access or speak as you?
Good sign: The AI can prepare the draft, comparison or checklist, but a person does the consequential click after reading it.
Watch for: If the tool can act while reading untrusted pages, emails or files, a prompt-injection mistake can become your mistake.

