The paper focuses on a growing risk for tool-using agents: a proposed action may look plausible while no longer matching what the user actually asked for. Provenance analysis is used to trace whether the action follows from the relevant instruction context.

As agents gain access to more powerful tools, intent alignment becomes a safety issue, not just a usability problem. Methods that can explain and block misaligned tool calls are likely to matter in enterprise deployments.