Blog
Notes from applying the framework.
Writing on AI agent deployment and governance — identity, audit trails, and the parts of "putting an agent into production" that a demo never shows you.
GOVERNANCE
Governance isn't what slows automation down. It's what gets it approved.
Why every agent deployment we build starts with the approval policy, not the automation — and what happens to the ones that skip it.
Aug 15, 2026
IDENTITYThe permission problem nobody solves before deploying agents
A shared API key isn't an identity. Why "who is this agent, and what is it allowed to do?" has to be answered before the first workflow goes live.
Aug 12, 2026
AUDITWhat happens when someone asks "why did the agent do that?"
If you can't answer that question in one query, you don't have an audit trail — you have log files. The difference matters the first time it's tested.
Aug 9, 2026