Agent context should expose public boundaries before summaries.
Summaries are powerful.
They compress.
They imply.
They can overreach.
So the boundary should come first.
What is public-safe?
What is provisional?
What should not be inferred?
What is held back?
An agent should see that before it starts speaking for the work.