When your agent calls POST /v1/runtime/actions/run, guardrails fire before anything else. The verb is checked, the risk level is evaluated, your policy is applied. Only then does execution proceed.
Policies match on verb, risk level, provider, or argument conditions. When a match fires, the action is approved, blocked, or escalated to a human. Your agent doesn't need to know the rules — the runtime enforces them.