MCP server that sits between AI agents and real systems. Evaluates every tool call before execution. Holds risky ones for human review.