It's running 24/7 with shell access. Confine its view of the world to data you want it to see. If the agent gets into trouble (Apple flags the device, BlueBubbles bridge gets rate-limited, whatever), ...