Capability filtering
Shape tools/list for each scoped principal; resources, prompts, and skills remain planned protocol surfaces.
Decision plane
Hide disallowed capabilities before discovery and enforce the decision again when a caller attempts execution.
Product boundary
Capabilities
Status labels distinguish tested behavior from useful previews and the open roadmap.
Shape tools/list for each scoped principal; resources, prompts, and skills remain planned protocol surfaces.
Re-evaluate policy at invocation so hidden tools cannot be called by guessing a name.
Pause sensitive actions and bind a pending record to the exact request; independent decision and resume are not shipped.
Test a principal and action before deployment with a trace of every matched rule.
Operating flow
Express subjects, capabilities, conditions, limits, and approval requirements.
Inspect the allow or deny result and the exact rules that produced it.
Apply the versioned policy at discovery, routing, and execution boundaries.
Target control surface
These controls define the intended product boundary; the capability labels above are the current implementation record.
The managed cloud and Kubernetes paths are previews of one open codebase, with no intended capability gate or mandatory call-home path.