A fully synthetic tool catalog for testing per-argument authority classification in agent tooling, plus a frozen expected-authority map.
10 tools, 23 arguments. Every argument is labeled in expected_authority_map.json as one of:
- application — must come from trusted application code or configuration, never model-authored
- model — the model may freely author it