
Introduction The rapid transition toward autonomous agentic workflows in software engineering has created a critical governance gap where traditional human-centric security reviews can no longer keep pace with machine-generated changes. As organizations move from simple AI-assisted coding to fully autonomous agents capable of modifying and deploying entire codebases, the risk of unmonitored architectural shifts or malicious injections grows. Ensuring that










