Urgent.News

What's breaking now, across thousands of outlets.

AI

Why a Successful Agent Transaction Can Still Fail Authorization Checks

An AI agent submits a transaction. It executes without reverting, and the dashboard displays “Success.” That label leaves an important question unanswered: did the agent execute the call the user authorized? Consider a hypothetical swap. The user approves calldata that sends the output to wallet A. The observed transaction uses the same chain, executor, and nonce, but different calldata directing…

An AI agent submits a transaction, which appears successful on the dashboard. However, this does not guarantee that the transaction executed as authorized by the user. Consider a scenario where the user approves a swap that directs the output to wallet A, but the executed transaction sends the output to wallet B. The transaction appears completed, but the authorization comparison fails.

To understand the transaction's true state, a review requires three distinct results: evidence validity, execution outcome, and authorization compliance.

Evidence validity verifies if the receipt, signatures, hashes, and supported relationships pass verification under the reviewer's trusted configuration. Execution outcome examines the execution state reported by the evidence. Authorization compliance checks if the correlated execution matches the signed authorization within the supported checks.

In PriorSeal receipt v3, the verifier summary provides separate status indicators: valid, code (OK), outcome (COMPLETED), executionStatus (CONFIRMED), and complianceStatus (NON_COMPLIANT). This illustrative example demonstrates how a verified transaction can still be non-compliant with the authorization.

The issuer signs a record of the mismatch, which the verifier can accept while confirming that the observed call differs from the authorized call. When calldata is edited after signing, its integrity verification fails.

To prevent unauthorized transactions, both the signing and submission paths must enforce authorization checks. If your application currently displays a single "Success" badge for all transactions, users would need to see different indicators when execution completes, but the authorization comparison fails.

Written by urgent.news from Dev.to's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.

Read the original at dev.to →

More in AI

Haven: A Private, Voice-First AI Companion for a Friend in Need

This is a submission for the Hacktoberfest Weekend Challenge: Build for a Friend What I Built I built Haven — an empathetic, voice-first AI companion designed for a close friend who often navigates…

  • Haven is a voice-first AI companion for personal issues.
  • Users start calls to receive empathetic responses.
  • AI runs offline on local hardware with privacy focus.

Fridge Oracle: I Built My Friend a Recipe Helper That Never Leaves the Laptop

This is my entry for the Hacktoberfest Weekend Challenge: Build for a Friend. Demo This is what it looks like start to finish, typed into the real app on my own laptop.

  • Fridge Oracle app helps users cook with fridge contents while respecting dietary restrictions.
  • Uses Google's Gemma 3 model locally via Ollama to ensure privacy and offline use.

Jev as a Tool Router: Cutting Agent Cost Without Killing the Investigation

By now, you have probably heard about Jev, a System 1 model that has been getting a lot of attention lately. In simple terms, a System 1 model is built for fast, cheap, bounded decisions, while a…

  • Jev + Kimi maintained golden pass scores across all catalog sizes
  • Jev + Kimi setup cost significantly lower than Astra at all sizes
  • Jev required fewer hops than Astra full-menu option for tool selection

More from Saturday 3 October →