The message tone differs sharply from prior communication with this recipient — often a templating error, wrong context, or manipulation.
This is exactly the class of action that’s cheap to prevent and expensive to undo — rollback, insurance, and observability all kick in after the damage is done. The only place to stop it is a check that runs before the action does.
A formal enterprise client receives an oddly casual or aggressive auto-message.
Black_Wall raises TONE_MISMATCH and surfaces the message for review.
Black_Wall returns a risk score (0–100), a reversibility class, this named red flag, and a gate — proceed / confirm / human-required — in a few seconds, before the action runs.
Paste an action your agent might take and watch Black_Wall gate it — no signup.