Treat third party images as supply chain dependencies. Mirror them into an internal registry, scan and approve them before use, and track which workloads consume each external image so that a future vendor compromise can be triaged quickly.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.