Know who asked
OCI IAM validates the signed-in identity before the agent workspace opens, linking each request to an authenticated subject.
Identity verifiedMeridian Guard connects authenticated identity, OCI Responses, model-generated SQL, Oracle DeepSec enforcement, results, and independent audit records in one verifiable trail.
Meridian Guard retains each model-generated SQL attempt—including syntax failures—and correlates it with the authenticated user, DeepSec end-user context, Oracle result, and independent evidence sources.
OCI IAM validates the signed-in identity before the agent workspace opens, linking each request to an authenticated subject.
Identity verifiedOCI Responses selects function calls and generates SQL. Meridian Guard records the exact statements, DeepSec context, and Oracle results for review.
Actions recordedOracle DeepSec evaluates the propagated end-user context before returning governed data.
Context enforcedThe model remains free to discover the accessible schema and iterate on SQL. The application passes the exact SQL through the Python thin driver while Oracle DeepSec determines the data authorized for the authenticated end-user context.