Problems this area addresses
- Tool access without a documented risk and approval model
- Untrusted content reaching an agent without defensive handling rules
- Agent actions that cannot be reconstructed or reviewed
- Deployment decisions made without evidence-backed safety and readiness gates