Permissions hold through AI
NO SIDE DOOR
The AI runs under your permissions. A field hidden from you never enters AI context — not in answers, not in summaries, not in search. The Ask page lists exactly which fields are hidden from the AI for you, by name, so the guarantee is readable, not asserted.
AI changes are signed
AUDIT TRAIL
Everything the AI creates or changes appears in the audit log as its own actor — AI · Ask (for you) — exactly like API · token and Automation · name. "Who changed this?" has one consistent answer, and an AI write is never dressed up as a human one.
One click walks it back
UNDO
Records the AI creates come with an Undo on the confirmation — they move to the Trash, restorable like anything else. Schema changes are confirm-to-apply before they happen: the AI proposes, you approve, nothing lands silently.
Honest when it can't
FAILURE POSTURE
No AI configured? Surfaces degrade and say "no AI used" rather than pretending. Fair-use limits fail open — a metering hiccup never blocks a paying customer. And when a verification check can't re-run, the receipt says so instead of quietly shrinking the denominator.