A new proposal suggests using Liquid Types to constrain AI agent behavior within a formal sandbox. This approach treats agent permissions as dynamic types that evolve during execution. It prevents unauthorized tool calls by enforcing strict type-level boundaries. Developers can now programmatically limit agent autonomy without relying on fragile prompt-based guards.