Right now, the user is expected to approve requests. Maybe they don't want to have to do that. They should be able to turn it off.
Also would be cool to make a toggle that lets you control whether an agent can use this tool. Maybe we give approval authority to a smart orchestrator model like o1, but not to the lower level executor models that the orchestrator is managing.