WAF-AGN-020 – Tool Use Governance Description Not every agent should be able to use every tool. Tool use must be approved, logged, and limited. Requirements Tool whitelist/denylist Approval process for new tools Logging of all tool-use events Rate limiting per agent Severity: High Automatable: High AGN-010 – Agent Identity & Authentication AGN-030 – Reasoning Transparency