You're deployed at a customer whose stakeholder wants the agent to use each user's full message history across the company to personalize answers — but much of that history contains data those users are not permitted to see across teams. Build a version that delivers the personalization value while respecting access boundaries (personalize only from data the requesting user is allowed to see). State assumptions. AI tools are allowed. Then have the conversation where you tell the stakeholder you can't build the literal request, and propose the compliant alternative.