Security reviews are designed for deterministic systems where code paths are predictable. AI agents are probabilistic interpreters where context influences behavior. You can audit what the agent can access. You can't audit what it will interpret as instructions.