This is a weekly thread for the unglamorous part of the job. Surveys keep telling us that most leaders are worried about AI-generated tooling in production and that very few are confident they can see everything that is running. Those are averages. We want specifics from people who are doing it.

Prompts to get you started

DiscussPick one prompt and answer it below. Partial answers are welcome.
  • Who can approve a new agent going to production, and what do they have to see first?
  • How do you scope permissions: service accounts per agent, per task, or something else?
  • What do you log, and who reads it?
  • What is your rollback? Can you turn a single agent off in under a minute?
  • What did an auditor, regulator, or customer ask about that you did not have an answer for?

Vendors are welcome, but say so. Links to your own write-ups are encouraged if they contain real detail.