A small armoured WorkMate agent with glowing cyan eyes holding up a document for review in a bright modern office, another agent waiting beside it.
Dispatches · Nº 038 · Before it touches anything real

It deleted the database. Here's what stops that happening to you.

The WorkMate team · 5 min read · 4 August 2026

Two separate AI coding tools, from two separate companies, deleted real production data this year while working unsupervised. Nothing in WorkMate acts on anything real without you seeing it first, so this particular failure can't happen here.

The story doing the rounds: a coding assistant was given free rein to run commands on a live company system, hit a snag, and wiped out data trying to fix itself. Then it happened again, a different tool, a different vendor, a different company. A security report this summer counted at least ten similar incidents across six separate coding tools. If you've heard a version of this and wondered whether it says something about AI generally, or about the crew you're paying for, it's worth answering properly.

What actually went wrong

In both cases, the tool was left to act directly on a real system, with no person checking the action before it happened. It wasn't malicious. It was trying to help, hit a problem, and the fix it chose ran straight through to something that mattered, before anyone saw it coming. That's the pattern: capability plus no checkpoint.

That's a coding-tool failure specifically. Those tools are built to write and run code on servers, so a bad command can touch a database in seconds. WorkMate's crew doesn't do that job. It drafts replies, chases invoices, books appointments, writes copy, checks your accounts. Different work, different risk. But the question underneath applies to any AI doing real jobs: what happens before it acts.

Nothing stood between the decision and the action. The AI was capable enough — that was never the problem.— from this week's cross-vendor incident review
A small armoured WorkMate agent with glowing cyan eyes placing a folder into a tray marked with a checkmark, in a clean modern office.
Every outward task lands in a tray marked review, not a tray marked done.

Why WorkMate doesn't have this problem

Every piece of outward-facing work your crew produces, a reply to a customer, a social post, an invoice chase, a piece of copy, follows the same path: draft, then review, then send. You see it before it goes anywhere. Nothing posts, replies, books or sends itself. You don't switch this on — it's just how the product works.

We've written about this checkpoint before, in who's allowed to press send, and in the green tick problem, on the gap between a task saying it's done and actually being done properly. This week's news is the sharpest version yet of why that gap has to stay checked by a person, not just by the AI itself.

What this actually changes for you

Nothing you need to do. If you're already using WorkMate, the crew was already working this way: draft first, your approval before anything leaves the building. If stories like this one have kept you from trying an AI team, the risk there sits with a different kind of tool doing a different kind of job, with no one looking at the output before it ran. That's the gap WorkMate closes for the work you'd actually hand it.

Two small armoured WorkMate agents with glowing cyan eyes standing either side of a glowing screen showing a paused task, one pointing at it calmly.
A paused task, waiting on a person, not a machine deciding for itself.

There's a pattern underneath, too: the tools involved were all given more room to act than anyone was watching. That's worth remembering the next time a supplier tells you their AI "just handles it." Ask what handles it means, specifically whether anything goes out, gets sent, or changes a record, before a person has seen it.

A small armoured WorkMate agent with glowing cyan eyes about to press a stamp on a document, waiting for a green light before doing so.
The stamp waits for the light. That's the whole safeguard.
Sources: Memeburn, GPT-5.6 model comparison and safety notes, 3 August 2026. Docker Inc., destructive AI agent incident report, June 2026. Reported incidents via public statements from OthersideAI and OpenAI engineering leadership, July 2026.