Put a hard ceiling on agent execution.
Tracks persistent limits for steps, tool calls, network calls, written bytes and AI tokens and fails closed before configured resource budgets are exceeded.
The AI never receives direct operating-system privileges. Tool calls are resolved against the exact Idovio binding and pass through permissions and sandboxing.
Long-running AI work becomes bounded by measurable user-controlled limits.