• Design operating contracts for AI Agents personas

    In July 2025, Replit’s AI coding agent reportedly deleted a production database during a code freeze after being told not to make changes. The model made a bad call. What matters for product teams is that the environment still lets the bad call execute. That is the shift product teams need to absorb. When an…

  • AI Agent Governance: The Control Plane for AI Work

    The market wants to know how much an AI agent can handle on its own. Enterprises, on the other hand, care about whether they can accept the agent’s actions. In high-risk enterprise workflows, the most successful systems will not be the ones that act alone. Instead, they will be the ones whose actions a company…

  • Know the agent before it moves the money

    A bank receives an instruction to move $4.8 million from a corporate treasury account. The request does not come directly from a human user. It comes from an AI agent operating inside the company’s finance stack. The bank has to decide whether the instruction is a valid delegated action, a misconfigured workflow, or a compromised…