For retrievals I don't see the value with human-in-the-loop. For endpoints that modify / create data, I see the value in having a human-in-the-loop step.
It does seem up to the plugin developer to introduce that human-in-the-loop step though.
"chat gpt please retrieve academic journals from JSTOR using the most efficient methods". Chat gpt proceeds to find a way to create a botnet using nothing but RESTful GET requests to some ancient poorly written web servers running PHP4
It does seem up to the plugin developer to introduce that human-in-the-loop step though.