My assistant has no permissions at all and is just as useful. All it needs is todo, reminders and websearch (and maybe a browser but ymmv).

> websearch (and maybe a browser

Your assistant can literally be told what to do and how to hide it from you. I know security is not a word in slopware but as a high-level refresher - the web is where the threats are.

> no permissions at all

> and maybe a browser

does not compute

I suspect OP actually means 'cannot access anything locally' by 'no permissions'.

If I was malicious I could do a lot of damage to someone with subtle manipulation of todo and reminders.

I’ll bet I could even push someone on the margins into divorce.

How would you do it?

You are just some bad web searches away from being on suspect lists