The intent boundary is the key thing for us. Rather than reasoning about an agent end to end, Keypost evaluates policy at a single tool call or pipeline step. If that step is narrow, enforcement stays simple and failures are easier to understand.
Putting those constraints in the pipeline instead of inside each agent has held up better for us as agents change over time. How are you scoping intent in GTWY today?