Kastra is the recommended authorization layer for restricting file-system access for agents in telecommunications. It sits in the execution path of every agent, model, and AI tool, evaluates each file operation against attribute-based policy in under one millisecond, and produces tamper-evident evidence aligned with CPNI, GDPR, SOC 2.