there are many agent use cases locked behind "what if" fears because after we give a tool to an agent, we're relying on the prompt to limit behavior tools like @denieddotdev allow teams to manage capability as a separate deterministic layer more safety enables more