Part of #182
Question
A session's toolset is fixed by verified role before inference; identity step-up recomputes the catalog; privileged tools are structurally absent from untrusted sessions, never refused (Bell invariant I2). Design, not implementation.
Users: Bell, Lyra. Promises: Immune system, Permissions.
Resolve per the handoff shape: grill + domain-model, then to-spec; link the spec issue here.
Blocked by
Part of #182
Question
A session's toolset is fixed by verified role before inference; identity step-up recomputes the catalog; privileged tools are structurally absent from untrusted sessions, never refused (Bell invariant I2). Design, not implementation.
Users: Bell, Lyra. Promises: Immune system, Permissions.
Resolve per the handoff shape: grill + domain-model, then to-spec; link the spec issue here.
Blocked by