Acquisition
What result does policy produce for the declared agent identity, resource and proposed method?
Product
AgentGuard combines supplied source evidence, entitlement records and your own rules at the place where an agent can still change course.
Decision boundary: AgentGuard reports an operational result from your configured policy and the evidence supplied to it. It does not grant a license, determine legal rights, or replace legal review.
The problem
A crawler rule answers a narrow acquisition question. A public usage signal expresses a source preference. A contract record may evidence a scoped entitlement. Your organization—not AgentGuard—determines the legal basis for use.
AgentGuard keeps those layers distinct, preserves where each supplied claim came from and reports the strictest applicable result produced by your configured policy.
Decision model
There is no universal “safe” flag. Each decision shows how the independent dimensions resolved and why.
What result does policy produce for the declared agent identity, resource and proposed method?
Do attached signals address the declared purpose, retention, transformation and output?
Does a caller-attested record claim to cover this resource, use and time?
What does your organization require when evidence is absent, stale, conflicting or restrictive?
Should ambiguity stop automation and route to a named policy owner?
Modular target architecture
The pilot provides scoped API access, server-stored policy revisions, tenant decision history, usage limits and exports. Your runtime supplies normalized evidence. Managed fetching, live enforcement and signed decision receipts require separate integrations.
Named policies, guided templates, synthetic tests and owner-approved immutable revisions. Explicit key assignments activate a revision without removing workspace safeguards. Usage and filterable decision history remain tenant-scoped.
Authenticated checks and deterministic evaluation over caller-supplied normalized evidence.
A separately scoped customer integration would capture the response delivered to its identity, region and network.
Source-handling model
The planned collector minimizes cost and liability by collecting relevant published signals at point of need, then caching only where repeated customer traffic justifies it.
Adopt without breaking traffic
The current pilot starts with sanitized replay traffic. Live shadow and enforcement are customer-integration options to validate separately before any result can control a pipeline.
Evidence, not magic
See the semantics
The sandbox runs eight frozen scenarios and makes no request to their display URLs.