AI guide

What is an AI agent?

An AI agent decides a sequence of steps and calls tools to carry them out. A useful business agent has a narrow job, a short list of tools, and a person responsible for anything that is hard to undo.

Agent, chatbot, assistant

A chatbot holds a conversation, usually with a customer. An assistant helps a signed-in employee beside a system they already use. An agent is defined by action: it may look up, draft, and, if allowed, change something. The labels get mixed in sales material. In a design they should not be mixed, because a customer conversation and a tool that edits records have different risks.

The loop

The model is given a goal, the tools it may call, and the results of those calls. It chooses the next step until it stops or it is stopped. The tools are ordinary functions you wrote. Authorization sits in those functions. A sentence in the prompt that says “do not refund more than the policy allows” is not a control. The refund function either checks the rule or it does not exist.

Logs matter. You should be able to see which tool ran, with which inputs, and what it returned. Without that, you cannot explain a bad morning.

A job small enough to trust

Prepare a renewal brief from three records and wait. Classify inbound mail and draft a reply for a queue. Chase missing fields on an application and stop when a person must decide. Those are agents. “Handle the customer” is not. The agent development page is the delivery description. Start with reads. Add one write with approval. Expand only when the log is something you would show an auditor.

An agent is a task with tools

Call it an agent when

  • It takes a defined task
  • It may use named tools
  • It leaves a log

Do not call it an agent when

  • It only chats
  • It may do anything
  • Nobody can see the steps

Bound it before you build it

01

Write access

Reading is not the same power as changing a record.

02

The stop

Low confidence should wait for a person.

03

The audit

If you cannot explain a step, the agent is not ready.

Bound the word before you use it

  1. 01

    One task

    Write the job in a sentence.

  2. 02

    The tools

    Read, draft, or write.

  3. 03

    A stop

    The case where it must wait.

  4. 04

    A log

    Who will read the steps.

Marks the agent explainer has a boundary

  1. 01

    A stop is defined

    The article says an agent needs a condition that ends the run.

  2. 02

    Tools are limited

    It can only take actions that were allowed.

  3. 03

    A person approves

    Money, customer messages, and deletes are not left unattended.

  4. 04

    Not a renamed chatbot

    The difference from a bot that only replies is explicit.

Questions we hear

Do agents replace staff?

They take preparation and lookup off a person’s plate. Someone still owns the outcome. If a vendor cannot name that person, do not buy the agent.

Are multi-agent systems better?

Sometimes they are a way to avoid specifying the job. One agent with three tools is easier to test than four agents talking to each other. Add a second only when the first has a measured task.

Is this safe with customer data?

Only if each tool enforces the same permissions the user has, and the transcript retention is deliberate. The secure software page describes the surrounding habits. The agent does not get a special pass.