Agent-Sentry: Bounding LLM Agents via Execution Provenance | ArxivCSExplorer