Google's AI Agent Cage Stays Empty as Developers Await Public Release
Google has built a security framework for AI agents on Android, but it remains empty. The company created a system permission called EXECUTE_APP_FUNCTIONS, which is reserved for approved agents.
This permission allows developers to build shortcuts to specific actions within their apps, eliminating the need for users to tap through screens. However, the feature is currently only available to a small group of in-house testers and has no timeline for public release.
Google's approach is unusual, as Android typically ships features first and then locks them down after they cause problems. By building the framework now, Google is locking down potential risks before developers have ample reasons to push back.