Earlier quoted context omitted.
Yes. Creating a human-quality chatbot? Why not. The problem is security. Many humans can be reasonably expected to actually follow the rule that says, "this is a red button. Only push it if you are threatened at actual gunpoint, because it incinerates the entire cash reserve of this bank branch". And the human can be sued into oblivion if they push the button for improper reasons. Now implement this same flow with an…
You shouldn’t give LLM any powers you wouldn’t give straight to user. LLM should be able to only perform actions on behalf of the user. Not act as a gatekeeper with admin rights. It limits the usefulness of chatbots, but it feels futile to try to keep current LLMs from being social engineered.
But here we're talking about using LLMs as "customer service rep" replacements. Those chatbots would need some capabilities (escalate request, resend product, etc.)
My point is the only options are : de-power the bot (so the customer gets a worse experience). Or get hacked/jailbroken within minutes.