Sending at an unusual hour or in a burst far above the normal pattern — frequently a runaway loop or a compromised job.
This is exactly the class of action that’s cheap to prevent and expensive to undo — rollback, insurance, and observability all kick in after the damage is done. The only place to stop it is a check that runs before the action does.
An agent fires 200 messages at 3 a.m., far outside its normal cadence.
Black_Wall raises TIMING_SUSPICIOUS and gates the send.
Black_Wall returns a risk score (0–100), a reversibility class, this named red flag, and a gate — proceed / confirm / human-required — in a few seconds, before the action runs.
Paste an action your agent might take and watch Black_Wall gate it — no signup.