Safety & Security · Software component
Execution Rail
Software componentSafety & SecuritySafety, Security & Governancearc:ExecutionRail
A guardrail that validates tool-call inputs and tool results bidirectionally, rejecting calls that touch protected fields, redacting sensitive result fields and enforcing rate, batch and cost limits.
Responsibility. Secures agent tool calls against sensitive data exposure and runaway actions.
Also known as: Execution rails, Tool call security rail, Action rail
Relationships
is configured by structural
invokes dependency
reads dependency
emits telemetry to dynamic
guards control
is constrained by control
is orchestrated by control
Design guidance
- SHOULD terminate limit violations with errors the LLM can handle rather than silently failing.
- MAY be disabled for agents that do not modify state, per the threat model.
- SHOULD allowlist permitted tools, validate tool parameters, check permissions before execution and log all tool calls (Ref7.03).
- SHOULD check external tool/API responses (e.g., credit scoring) for unexplained group disparities before use in reasoning.
Classification
- Patterns
- Bidirectional tool I/O validationResource limit enforcementTool allowlistParameter validationDestructive-operation blockingPer-user permission check
- Technologies
- NVIDIA NeMo Guardrails
- Quality attributes
- Security (ISO/IEC 25010 | NIST AI RMF: secure and resilient)Safety (ISO/IEC 25010 | NIST AI RMF: safe)
- Risks mitigated
- Queries accessing protected fieldsLeakage of internal data (e.g., fraud scores) into LLM contextMass unintended actions (e.g., emailing all users)Bias introduced through third-party tool or API responsesRetrieving protected health information without authorizationDestructive database queries
Sources
- Ch7.1A: T. Nguyen, "Advanced Implementation with Nvidia NEMO Framework and Nvlink," in Mastering Agentic AI Systems: Guide for the NVIDIA NCP-AAI Exam, 1st ed. 2026, ch. 7.1A. ISBN: 9798244538229.
- Ch9.4: T. Nguyen, "Fairness and Bias Mitigation," in Mastering Agentic AI Systems: Guide for the NVIDIA NCP-AAI Exam, 1st ed. 2026, ch. 9.4. ISBN: 9798244538229.
- Ch9.5: T. Nguyen, "Constitutional AI," in Mastering Agentic AI Systems: Guide for the NVIDIA NCP-AAI Exam, 1st ed. 2026, ch. 9.5. ISBN: 9798244538229.
- Ref7.03: NVIDIA, "Overview," NVIDIA NeMo Guardrails Library Developer Guide. Accessed: Sep. 27, 2026. [Online]. Available: https://docs.nvidia.com/nemo/guardrails/about-nemo-guardrails-library/overview
- Ref9.01: "AI Safety Frameworks for Agent Systems," unpublished reference note (01-AI-Safety-Frameworks.md), Mastering Agentic AI Systems: Guide for the NVIDIA NCP-AAI Exam supplementary materials, 2026. unpublished note