drop agent tool call log export · parse injected args + unauthorized tool invocations · runs locally
drop agent tool call log export · local only
heuristic screener · vendor schema varies · not definitive proof