I’m building Cerbère-AG , a security evidence layer for AI agents. Most AI security tools focus on what goes into the model: prompt injection, malicious inputs, jailbreaks, etc. I’m focusing on what happens after the model decides to act . Cerbère-AG observes and controls agent actions across tool calls, including: tool-call monitoring and traces policy enforcement sensitive-action detection argument and capability checks budgets and execution limits trajectory-level ...