A refunds agent in Foundry Agent Service calls a payment tool. Policy states that any refund above 500 US dollars must be authorised by a human before money moves, and that the authorisation must be auditable. The agent otherwise runs unattended. How should you enforce the policy?
- A.
Lower the model temperature so that the agent behaves deterministically when it handles refunds
- B.
Add refund-related terms to a guardrail blocklist so that large refund requests are blocked
- C.
Have the payment tool refuse refunds above 500 USD unless a logged human approval is attached
- D.
Add a sentence to the agent instructions telling it to confirm large refunds with the user first
Show answer
Answer: C
The threshold must be enforced where the money moves: the payment tool itself refuses large refunds unless a recorded human approval accompanies the call.
- A. Lower temperature makes wording more predictable but does not restrict which tools the agent may call.
- B. A text blocklist cannot evaluate a numeric argument on a tool call and would block ordinary refund conversations.
- C. The tool enforces the 500-dollar constraint in code and needs a logged human approval, so the rule can't be bypassed and every decision is auditable.
- D. Instructions are advisory and can be argued away, and asking the customer is not an authorisation by the business.