Should you build that agent?
Most proposed agents are governed retrieval wearing a more expensive hat. This test applies four criteria to the list you are planning and tells you which ones survive. Expect it to say no more often than yes.
The Test
List what you are planning to build
One or two words each. Then answer five yes or no questions for every one. Two of them decide whether it is an agent. Three decide what it needs before it is safe to build. Nothing is sent anywhere, nothing is stored, and there is no sign-up.
Is it an agent?
Either one of these justifies it. Neither, and it is retrieval.
What will it need?
None of these justify an agent. They decide what has to exist before whatever you build is safe.
Result
Answer all five questions for every agent to see the result.
The case people argue about
Onboarding that answers questions is retrieval, not an agent, however many systems it reads from. Onboarding that tracks where someone has got to, notices what they have not covered and adapts is stateful, which is agentic, and it needs memory, which carries its own governance problem. Same word, two different products.
The test is the first of four deliverables
Knowing which agents are justified is the easy part, and it is the part we give away. The tool inventory, the control model and the eval set are what a security function actually signs off, and they are what the knowledge audit produces.