Beyond 'approve this tool call?': dev explores policy enforcement and intent checks for coding agents

Independent_Bag_2904 · reddit · 2026-09-08

A developer building Armor AI asks on Reddit whether anyone is actually enforcing policy on AI coding agents, or if everyone just trusts per-call permission prompts. Their tooling adds hard allow/deny rules for tool calls plus an "intent check" — the agent declares its plan up front and gets blocked if it drifts mid-task — with everything logged, targeting the open-source agent opencode which currently lacks such a layer. They're sanity-checking the pain point before building: do teams have real guardrails beyond prompts and git history, has an agent ever done something destructive, and what would an ideal policy layer look like (org-wide vs per-project, deny-by-default vs audit-only)?

Original post →

More from coding & agent

coding & agent channel →