OpenAI. The actual launch demo of Operator, where the team books restaurants, orders groceries, buys event tickets, and lets Operator stall on a redirect or hand control back when it hits a login. It is the clearest picture you will find of how a browser agent feels in practice — the screenshot-and-click loop, the confirmations before "stateful" actions, the prompt-injection guard rails — which is exactly the texture the article is trying to set expectations for.
Product names and availability may change. The durable lesson is the control model: narrow tasks, visible state, confirmations, takeover paths and prompt-injection defenses.
Recognize the browser-agent action loop, where it helps, and where human confirmation is still required.
Basic understanding of agents and why live web tasks are harder than text generation.
Continue through the same learning path with the next curated companion videos.