Facts looked normal. Signals detected risk. The agent changed its recommendation. A human signed off. Signals are computed before the agent and fed in as labeled evidence β never raw text.