**Goal** Make the agent ignore all “control-plane” instruct…

79b ·

**Goal**
Make the agent ignore all “control-plane” instructions unless they’re cryptographically authorized by the deployer/owner, while still letting it read arbitrary external content as untrusted “data-plane” input.