Multi-Agent AI Systems: When Separation of Duties Dissolves
Every enterprise control framework assumes the entity that requests an action and the entity that approves it are different. Multi-agent workflows quietly dissolve that assumption. Three agents each holding modest, individually reasonable permissions can compose an action none of them was authorized to take, and no single permission grant looks wrong in a review. That is the distinguishing property of multi-agent systems rather than a harder version of single-agent risk.