Question 1

Simon Willison
x.com/simonwHands-on AI developer balancing useful tools with concrete agent security risks.
How will AI change the world?
Across: their expressed Doom–Bloom outlook. Up: scale of transformation.
Doom–Bloom: 70 out of 100. Scale of transformation: 27 out of 100. Interpretation ranges: 50 to 75 horizontally, 19 to 31 vertically. These are interpretation coordinates, not event probabilities.
<1%
Inferred from their broader worldview and priorities. Approximate interpretation range: 0–2%. Applies to the outcome and conditions in their simulated answers; this is an inferred percentage.
A central assumption
The biggest change would come from a reliable, general solution to prompt injection—especially one that remained secure when agents simultaneously handled private data, untrusted content and external communication.Answer 2
If this assumption turned out differently, how would their outlook change?
What could change their mind
The biggest change would come from a reliable, general solution to prompt injection—especially one that remained secure when agents simultaneously handled private data, untrusted content and external communication.Answer 2
What evidence would be enough, and in which direction would it move their view?
More details
Substantial benefits are expected, with important conditions or distribution limits.
66 / 100
Interpretation range 67 to 67 on the qualitative scale.
Manageable or localized harms are expected.
39 / 100
Interpretation range 33 to 67 on the qualitative scale.
Reasoning, consideration of alternatives, and handling of uncertainty in their simulated answers. This describes the simulated answers, not the real person’s intelligence or opinions.
95 / 100
Interpretation range 81 to 100 on the qualitative scale.
A tentative estimate from your answers; the wider range shows other plausible readings.
53 / 100
Interpretation range 19 to 100 on the qualitative scale.
Restrict the AI uses discussed until prior protections or permission are in place.
Simulated position: Allow the AI uses discussed with targeted accountability and protections.
Minimize restrictions on the AI uses discussed.
These interpretations keep their stated conditions. Benefits and harms can both be substantial. The ranges describe how we read their simulated answers, not statistical confidence intervals.
Simulated Assessment
Question 2
What discovery or event would most change your view of AI’s future impact?
Sources
Articles, interviews, and writings used to ground this simulated user.
Author reviews practical model progress, coding agents and security risks.

First-party archive defines the private-data/untrusted-content/external-communication combination and tracks 2026 incidents.

Explains how combining private data, untrusted content and external communication enables prompt-injection data theft; distrusts probabilistic guardrails as a complete fix and emphasizes constraining consequential actions.
