Agreed. I am less worried about prompt injection now, but I still haven't given my agents permissions to send emails.