One coding agent, one bug report, one repository. It reads the code, writes the patch, runs the tests, opens the pull request and tries to release. Each of those is a live authorization check against a WorkOS staging environment before the tool runs, and an audit log event after. Change which grants the agent holds and run it again: the code is identical, the run is not.