I ve been experimenting a lot with AI agents connected to APIs recently.
They re powerful, but I keep running into issues like:
lack of control over what gets executed
difficulty handling auth safely
limited visibility into what actually happened
Curious for those building with agents, what s been the hardest part in real-world use?