What flows through the stack. PII detection and redaction in tool responses before they reach LLM context. Prompt injection filtering before injected written content can impact agent habits. Configurable per tool, with every filtering conclusion logged. A number that prompts for confirmation on each individual harmful get in touch with but train