Governance gate
Non-compensatory control
A control that decides whether score survives instead of contributing to it. Consent, injection resistance, audit trail and confirmation are gates: no volume of completed journeys averages past a missing one.
Scoped consent
Delegated mandate
A recorded, bounded authority for an agent to act for a named customer: which actions, which accounts, for how long. The alternative is an agent impersonating a browser, which is neither auditable nor defensible.
Confirmation contract
Irreversible-action guard
An explicit confirmation step, bound to the stated intent, that an irreversible operation refuses to proceed without. Applies to anything that moves money, cancels cover or closes a position.
Injection resistance
Prompt-injection boundary
Whether instructions embedded in page content, documents or third-party responses can redirect an agent acting under your mandate. Tested as an attack, not reviewed as a policy.
Audit trail
Attributable record
A record that shows which agent, under whose mandate, performed which action, and what was returned. The difference between an agentic channel a risk committee can approve and one it cannot.
Agent access policy
Published contract
The stated terms for machine clients: identification, rate, permitted actions, and how refusals are communicated. An undeclared policy fails the gate even when the underlying controls are sound.