Policy DSL enforces at the signing layer. The enforcement is not a software check that precedes signing — it is embedded in the signing ceremony itself. An agent cannot produce a valid MPC signature for a transaction that violates its policy bundle. The cryptographic architecture makes bypass structurally impossible, not merely prohibited.
For DAO treasury automation, this distinction is operational. A governance framework that can be bypassed by a compromised AI agent is not a governance framework — it is an audit log for incidents that have already occurred. Policy DSL creates enforceable limits on agent authority before any transaction reaches the chain.
Fast-Path Execution — sub-100ms signing for pre-authorised transactions — operates within the authorised policy context established by Policy DSL. Even the fast path cannot sign an action that violates the active policy bundle.