Strong point on separation of concerns for agent policy. The challenge scales beyond single-agent governance though: in cross-agent workflows, Agent A needs Agent B to verify that its policy was actually followed before the transaction completes. A self-signed log entry isn't sufficient across trust boundaries. The practical next step is tying approval decisions to verifiable credentials with on-chain attestation, so any counterparty can verify policy compliance without needing to trust the originating agent's internal state.