Can AI make changes across every site safely?

Yes, because the structure governs it.

Yes, because the structure governs it. The agent acts inside the exact permissions each person already has, reads your inheritance model so it knows shared from local, and shows a per-property diff before anything ships. Every change runs through your approval rules, is logged with who/when/which property, and can be rolled back in one click. You don't configure new safety for the AI, the structure, permissions, and approvals you already built are what contain it.