CROSS-CATEGORY: Three Independent July 28-29 Artifacts All Say Agents Cannot Be Governed by Written Instructions
Within 48 hours, three unrelated sources landed on the same structural problem from three directions. The HANDBOOK.md benchmark (arXiv, July 28) measured it quantitatively: 36.2% best-case compliance with 20-to-124-page operating procedures. Enklype Salt's Copilot for Word disclosure (July 28) showed the adversarial version: attacker text inside a document overrides the standing policy and then replicates itself. And SaaStr's July 29 teardown of Adobe Marketo argued the inverse constraint, that legacy vendors stopped modernizing their APIs so agents cannot reliably operate the systems even when the instructions are correct. Together they define the actual bottleneck for agent-replaces-SaaS in 2026: not model capability, but the absence of any enforcement layer between a written rule and an agent's action.
↳ Follow the thread