Interesting argument I heard recently from an agentic AI person: Since people can be socially engineered, and effective social engineering sites often work across lots of people, we can build a safe-enough agentic browser just by doing at least as well as most people, similar to how self-driving cars don't have to be perfect, just better.
That sounds reasonable to me, but I'm also too close to the teams doing it: am I missing any strong counterargument?
