Runtime Agent

Pre-execution gate — policy + trust score before agent actions run.