A production control loop for Claude Code with task contract, stop conditions, bounded run, evidence packet, and human review

Claude Code stop conditions are agent security controls

A production Claude Code run should know when to stop. Stop conditions turn unclear scope, wider tool access, weak rollback, and missing evidence into human review moments before an agent crosses a security boundary.

July 21, 2026 · 7 min · 1347 words · Thomas De Vos
Read Claude Code stop conditions are agent security controls
A four step control loop for normal agent grants, exception asks, human gates, and receipts

Give agent exceptions a budget before they become policy

Claude Code and enterprise AI agents sometimes need more access than the normal task contract allows. Treat that extra authority as an exception budget, with a reason, owner, expiry, evidence, and revocation path.

July 20, 2026 · 6 min · 1135 words · Thomas De Vos
Read Give agent exceptions a budget before they become policy
Two books connected to an operating stack for useful, reviewable, bounded, and auditable AI agent work

Treat agent autonomy like a production privilege

The safer question for Claude Code and enterprise agents is not how much autonomy the model can handle. It is which privilege the work deserves, how long it lasts, and what evidence the human gets back.

July 18, 2026 · 5 min · 1019 words · Thomas De Vos
Read Treat agent autonomy like a production privilege
Two AI agent books connected by code and risk loops for production AI agents

The agent runbook needs a buyer's question

AI agent teams often ask whether the demo worked. Buyers, auditors, and production owners ask a harder question: can we trust the run when authority, evidence, and rollback are visible?

July 17, 2026 · 5 min · 950 words · Thomas De Vos
Read The agent runbook needs a buyer's question
Two books, one operating stack: Claude Code in production and bounded enterprise AI autonomy

The agent diff and the agent boundary belong in the same conversation

Claude Code review packets and enterprise agent security are often treated as separate problems. They are two parts of the same operating stack: evidence for the work, boundaries for the authority.

July 14, 2026 · 5 min · 1059 words · Thomas De Vos
Read The agent diff and the agent boundary belong in the same conversation
A production review path for AI agents: task, authority, evidence, and approval

Before the agent gets more access, write the review path

Teams keep asking whether an AI agent is ready for more autonomy. A better question is whether the review path is clear enough before the next permission is added.

July 13, 2026 · 5 min · 1038 words · Thomas De Vos
Read Before the agent gets more access, write the review path
A prompt box outside a production control plane with identity, scope, approvals, logs, revocation, and review

The prompt is not the control plane

A good prompt can shape agent behavior, but production teams need a control plane around identity, tool scope, approval, logs, revocation, and review.

July 12, 2026 · 4 min · 852 words · Thomas De Vos
Read The prompt is not the control plane
A production agent loop with task boundary, narrow tools, stop button, receipt, and human approval

Agent autonomy needs a stop button and a receipt

Production AI agents need a fast way to stop action and a plain receipt after every meaningful run. Without both, autonomy becomes trust without evidence.

July 11, 2026 · 5 min · 960 words · Thomas De Vos
Read Agent autonomy needs a stop button and a receipt
A workflow showing pilot AI agent access reviewed with evidence before it is renewed or expired

AI agent access should expire before it becomes hidden authority

Agent permissions that helped a pilot can become hidden production authority. Put expiry, renewal evidence, and removal paths around AI agents before access drifts.

July 9, 2026 · 6 min · 1141 words · Thomas De Vos
Read AI agent access should expire before it becomes hidden authority
A diagram showing the risky handoff between an AI agent demo and production use

The agent demo is not the risk. The handoff is.

AI agent demos fail quietly when teams hand them to real workflows without scope, authority, evidence, and rollback. This is where Claude Code practice and enterprise agent security meet.

July 8, 2026 · 5 min · 874 words · Thomas De Vos
Read The agent demo is not the risk. The handoff is.