Someone needs to come up with a variant of su that will let you log in to an elevated account for a fixed purpose or time… so you can kick off an elevated process chain but know that some other person or script can’t piggyback on your session to do other stuff.
Sudo always felt like a system with that sort of potential but way too large an attack surface.