Data boundary
Retrieved, embedded, and logged data
Which documents, records, prompts, embeddings, logs, traces, and evaluation data can be used by the AI workflow, and where are they allowed to live?
Retrieval design
Permissions, freshness, and citations
Will the system use Bedrock Knowledge Bases, a custom vector store, search APIs, or a hybrid approach? How will permissions, freshness, citations, chunking, and source ranking be handled?
Tool boundary
Actions with approval, limits, and rollback
Which actions are read-only, which require approval, and which should never be delegated to an agent? MCP should make tool access explicit, limited, logged, and reversible.
Brazil Region, LGPD, and Portuguese quality
Region, LGPD, and Portuguese-language quality
Decide whether prompts, documents, embeddings, logs, traces, backups, and evaluation sets should stay in Brazil, and test Portuguese-language quality for legal, financial, operational, and customer-support terminology.