Your move
Connect only the needed information
Map every permission to a required step and remove access the job does not use.
Give the workflow only the sources and actions required for this job. Start read-only and draft-only wherever the work can be completed without direct action.
Do this now
Three moves, in order.
- Map each step to the exact information it reads and action it proposes.
- Remove convenient access that the job does not require.
- Separate read, draft, approve, send, edit, and delete permissions.
Build the artifact
Minimum access map
Copy these fields into a note, document, or sheet you already use.
Step
What the workflow does
Reads
Exact source needed
Proposes
Draft or recommendation produced
Acts
Any direct action and who approves it
Give AI the bounded job
Prompt from your artifact—not from vibes.
Audit this workflow for minimum access. Separate read, draft, approve, send, edit, and delete. Remove any permission that is not required by a named step and flag destructive or external actions for human approval.
Before you use it
The work leaves your hands only when:
- Every permission maps to a required step.
- External sends and irreversible actions have an owner.
- Test data or copies are used before live records where practical.
