Identity before execution
Bind the request to an application, environment, user context, and allowed capability set.
Security / explicit boundaries
Make identity, data scope, region, provider, and tool authorization visible in the execution path, with verified evidence attached to any certification or deployment claim.
Data and action path
Control model
Bind the request to an application, environment, user context, and allowed capability set.
Resolve region and provider boundaries before any model or tool receives scoped context.
Keep tool permissions narrower than the workflow and attach the decision to the trace.
Retain policy version, resolved boundary, and action outcome for later review.
Security review questions
Define the provider, region, retention, and redaction conditions that apply to each execution class.
Separate read, write, approval, and high-risk actions; deny by default when required context is absent.
Review versions, environment promotion, emergency fallback, and rollback as operational controls.
No badge theater
Certifications, audit status, encryption guarantees, data residency, and deployment modes should be stated only beside current evidence and precise operating boundaries.