A Claude Code agent run leaving receipts for changed files, tests run, logs captured, risk notes, and undo path

Claude Code needs permission receipts, not blanket trust

Claude Code permissions matter before the run, but teams also need permission receipts after the run: what the agent used, what was blocked, what still needs approval, and how to undo it.

July 19, 2026 · 5 min · 1010 words · Thomas De Vos
Read Claude Code needs permission receipts, not blanket trust
Two books connected to an operating stack for useful, reviewable, bounded, and auditable AI agent work

Treat agent autonomy like a production privilege

The safer question for Claude Code and enterprise agents is not how much autonomy the model can handle. It is which privilege the work deserves, how long it lasts, and what evidence the human gets back.

July 18, 2026 · 5 min · 1019 words · Thomas De Vos
Read Treat agent autonomy like a production privilege
Two AI agent books connected by code and risk loops for production AI agents

The agent runbook needs a buyer's question

AI agent teams often ask whether the demo worked. Buyers, auditors, and production owners ask a harder question: can we trust the run when authority, evidence, and rollback are visible?

July 17, 2026 · 5 min · 950 words · Thomas De Vos
Read The agent runbook needs a buyer's question
A diagram showing an agent bringing proof into a review packet with intent, diff map, tests, risk note, and rollback

Claude Code diffs need review packets, not trust

A Claude Code diff shows the changed lines. A review packet shows the delegated intent, scope, checks, risks, and rollback path a human needs before merge.

July 16, 2026 · 6 min · 1143 words · Thomas De Vos
Read Claude Code diffs need review packets, not trust
Two books, one operating stack: Claude Code in production and bounded enterprise AI autonomy

The agent diff and the agent boundary belong in the same conversation

Claude Code review packets and enterprise agent security are often treated as separate problems. They are two parts of the same operating stack: evidence for the work, boundaries for the authority.

July 14, 2026 · 5 min · 1059 words · Thomas De Vos
Read The agent diff and the agent boundary belong in the same conversation
A production review path for AI agents: task, authority, evidence, and approval

Before the agent gets more access, write the review path

Teams keep asking whether an AI agent is ready for more autonomy. A better question is whether the review path is clear enough before the next permission is added.

July 13, 2026 · 5 min · 1038 words · Thomas De Vos
Read Before the agent gets more access, write the review path
A prompt box outside a production control plane with identity, scope, approvals, logs, revocation, and review

The prompt is not the control plane

A good prompt can shape agent behavior, but production teams need a control plane around identity, tool scope, approval, logs, revocation, and review.

July 12, 2026 · 4 min · 852 words · Thomas De Vos
Read The prompt is not the control plane
A production agent loop with task boundary, narrow tools, stop button, receipt, and human approval

Agent autonomy needs a stop button and a receipt

Production AI agents need a fast way to stop action and a plain receipt after every meaningful run. Without both, autonomy becomes trust without evidence.

July 11, 2026 · 5 min · 960 words · Thomas De Vos
Read Agent autonomy needs a stop button and a receipt
A review packet checkpoint between a Claude Code diff and a production merge

Claude Code review packets beat clean diffs

A clean Claude Code diff is a weak production signal. Ask for a review packet with scope, tests, gaps, rollback, and human inspection notes before merge.

July 10, 2026 · 5 min · 910 words · Thomas De Vos
Read Claude Code review packets beat clean diffs
A workflow showing pilot AI agent access reviewed with evidence before it is renewed or expired

AI agent access should expire before it becomes hidden authority

Agent permissions that helped a pilot can become hidden production authority. Put expiry, renewal evidence, and removal paths around AI agents before access drifts.

July 9, 2026 · 6 min · 1141 words · Thomas De Vos
Read AI agent access should expire before it becomes hidden authority