Definition
An AI agent design where the model can propose actions but only certified outside evidence is allowed to authorize them.
A gate-based multimodal agent architecture in which model-emitted text is treated as inadmissible for authorization; only typed certificates from constrained verifiers can satisfy a deterministic gate's predicate schema for privileged actions.