[{"data":1,"prerenderedAt":914},["ShallowReactive",2],{"insight-insights_en-what-an-agentic-os-is-and-what-it-isnt":3,"insight-related-insights_en-what-an-agentic-os-is-and-what-it-isnt":271},{"id":4,"title":5,"author":6,"blobHue":10,"body":11,"category":246,"date":247,"description":17,"draft":248,"extension":249,"featured":248,"headline":250,"hue":251,"letter":252,"meta":253,"navigation":254,"path":255,"readMinutes":256,"related":257,"seo":261,"stem":262,"summary":263,"toc":264,"__hash__":270},"insights_en\u002Finsights\u002Fwhat-an-agentic-os-is-and-what-it-isnt.md","What an Agentic OS is, and what it isn’t",{"name":7,"role":8,"bio":9},"André","Founder & CTO","André is the founder and CTO of WizardingCode. Eight years building the software companies run on, now putting agents into production.",null,{"type":12,"value":13,"toc":237},"minimark",[14,18,21,26,29,32,36,43,77,83,89,95,167,173,177,183,189,195,199,202,205,209,234],[15,16,17],"p",{},"Most people meet AI agents as a chat window. You ask, it answers, and then nothing happens. That is useful, but it isn’t how a business runs. A business runs on work that moves between systems, people and decisions, every day, whether anyone is watching or not.",[15,19,20],{},"An Agentic OS is what it takes to hand some of that work to agents and still sleep at night.",[22,23,25],"h2",{"id":24},"a-plain-definition","A plain definition",[15,27,28],{},"An Agentic OS is a team of AI agents trained on how your business works, running inside the tools you already use, following rules your people set. Each agent owns one job. They share what they know. They stop and ask when a decision is above their limits. And everything they do is visible on one screen.",[15,30,31],{},"The word “OS” is deliberate. An operating system is not an app you open. It is what sits underneath and keeps everything else running. The agents are the visible part; the layers around them are what make it safe.",[22,33,35],{"id":34},"the-four-layers","The four layers",[15,37,38,42],{},[39,40,41],"strong",{},"Agents"," do the work. We use five kinds, and most companies go live with two or three:",[44,45,46,53,59,65,71],"ol",{},[47,48,49,52],"li",{},[39,50,51],{},"Responder"," answers customers, suppliers and colleagues, in your tone, from your data.",[47,54,55,58],{},[39,56,57],{},"Classifier"," reads what comes in, from emails to tickets to documents, and sends it to the right place.",[47,60,61,64],{},[39,62,63],{},"Scraper"," watches the sources you care about and brings back what changed.",[47,66,67,70],{},[39,68,69],{},"Orchestrator"," runs work that spans several systems: the refund, the CRM update, the courier booking.",[47,72,73,76],{},[39,74,75],{},"Analyst"," reads the numbers and has the report ready before the meeting.",[15,78,79,82],{},[39,80,81],{},"Shared memory"," is what the agents know about your business: policies, price lists, customer history, past decisions. Every agent reads from the same source, and it stays current as you work. No more “ask Maria, she knows”.",[15,84,85,88],{},[39,86,87],{},"Approval rules"," decide what an agent may do alone. They are written in plain language and set by your team. Above the limit, the agent pauses and a person decides, in the tools they already use.",[15,90,91,94],{},[39,92,93],{},"The command center"," shows every run, cost and result on one screen. You can replay any decision step by step, pause any agent, and follow the number you agreed on, every day.",[96,97,98,114],"table",{},[99,100,101],"thead",{},[102,103,104,108,111],"tr",{},[105,106,107],"th",{},"LAYER",[105,109,110],{},"WHAT IT ANSWERS",[105,112,113],{},"WITHOUT IT",[115,116,117,130,142,154],"tbody",{},[102,118,119,124,127],{},[120,121,122],"td",{},[39,123,41],{},[120,125,126],{},"Who does the work?",[120,128,129],{},"Nothing gets done",[102,131,132,136,139],{},[120,133,134],{},[39,135,81],{},[120,137,138],{},"What do they know?",[120,140,141],{},"Every agent guesses",[102,143,144,148,151],{},[120,145,146],{},[39,147,87],{},[120,149,150],{},"What can they do alone?",[120,152,153],{},"Nobody dares switch them on",[102,155,156,161,164],{},[120,157,158],{},[39,159,160],{},"Command center",[120,162,163],{},"What did they do, and did it work?",[120,165,166],{},"Nobody can prove it",[168,169,170],"blockquote",{},[15,171,172],{},"Agents alone are a demo. What makes them safe is everything around them.",[22,174,176],{"id":175},"what-it-isnt","What it isn’t",[15,178,179,182],{},[39,180,181],{},"It isn’t a chatbot."," A chatbot waits for a question. An Agentic OS works through a queue. It reads the inbox overnight, reconciles the stock file, drafts the replies, and leaves the three decisions that need a person at the top of the list in the morning.",[15,184,185,188],{},[39,186,187],{},"It isn’t a platform licence."," You don’t rent seats in someone else’s product and bend your process to fit it. The agents are built around your process, inside your systems, and you own the code, the prompts and the data.",[15,190,191,194],{},[39,192,193],{},"It isn’t a pilot."," A pilot runs on an export, for a demo, with nobody accountable for the result. An Agentic OS runs on live systems from the first week, against a number that the team whose work it takes has signed off. If it isn’t in production, it isn’t an OS yet.",[22,196,198],{"id":197},"where-to-start","Where to start",[15,200,201],{},"Nobody builds all four layers for the whole company at once. You start with one process that hurts, usually one with volume, clear rules and a number: the support inbox, the supplier files, the weekly report. You build the first squad of agents with its memory, its rules and its screen. Then you add a squad at a time.",[15,203,204],{},"The layers are what make the second squad cheaper than the first. The memory is already there. The rules have a format the team knows. The command center already shows the first squad’s numbers, so the next one is judged on the same screen, against the same kind of target.",[22,206,208],{"id":207},"how-to-tell-if-you-have-one","How to tell if you have one",[210,211,213],"prose-checklist",{"title":212},"You have an Agentic OS if the answer is yes to all of these",[214,215,216,219,222,225,228,231],"ul",{},[47,217,218],{},"Do the agents work inside the systems your team already uses?",[47,220,221],{},"Can you say, in one sentence, which decisions they may not take alone?",[47,223,224],{},"Do they all read from the same, current source of policies and history?",[47,226,227],{},"Can you open one screen and see what they did today, what it cost and what is waiting for you?",[47,229,230],{},"Has a number moved, and does the team that owns it agree?",[47,232,233],{},"Do you own the code, the prompts and the data?",[15,235,236],{},"If any answer is no, you have agents. That is a good start. The rest is the part that lets you rely on them.",{"title":238,"searchDepth":239,"depth":239,"links":240},"",2,[241,242,243,244,245],{"id":24,"depth":239,"text":25},{"id":34,"depth":239,"text":35},{"id":175,"depth":239,"text":176},{"id":197,"depth":239,"text":198},{"id":207,"depth":239,"text":208},"strategy","2026-09-15",false,"md","What an Agentic OS is, and what it ==isn’t.==","violet","OS",{},true,"\u002Finsights\u002Fwhat-an-agentic-os-is-and-what-it-isnt",4,[258,259,260],"why-95-percent-of-ai-pilots-never-reach-production","every-agent-needs-a-judge","what-agents-should-never-do-alone",{"title":5,"description":17},"insights\u002Fwhat-an-agentic-os-is-and-what-it-isnt","Not a chatbot, not a platform licence. A plain-language definition, with the four layers that make agents safe to run a business.",[265,266,267,268,269],{"id":24,"label":25},{"id":34,"label":35},{"id":175,"label":176},{"id":197,"label":198},{"id":207,"label":208},"O4B58r8Hq-cONZEYpn0ps8PFaK7Sr4eN71hJvwSQj0c",[272,484,673],{"id":273,"title":274,"author":275,"blobHue":276,"body":277,"category":246,"date":463,"description":464,"draft":248,"extension":249,"featured":254,"headline":465,"hue":466,"letter":467,"meta":468,"navigation":254,"path":469,"readMinutes":470,"related":471,"seo":474,"stem":475,"summary":476,"toc":477,"__hash__":483},"insights_en\u002Finsights\u002Fwhy-95-percent-of-ai-pilots-never-reach-production.md","Why 95% of AI pilots never reach production",{"name":7,"role":8,"bio":9},"blue",{"type":12,"value":278,"toc":456},[279,287,290,294,299,304,308,311,331,335,338,419,423,443,447,450],[15,280,281,282,286],{},"In 2025, MIT’s NANDA initiative looked at how companies were using generative AI and found that about 95% of enterprise pilots delivered no measurable impact on the P&L.",[283,284,285],"sup",{},"1"," Billions spent, demos applauded, and almost nothing changed in how the business actually ran.",[15,288,289],{},"We’ve seen the same pattern from the inside. Most of the companies that call us have already run a pilot. It worked in the demo. It never went live.",[22,291,293],{"id":292},"the-number-everyone-quotes","The number everyone quotes",[15,295,296,297],{},"The headline is easy to misread. It doesn’t say AI doesn’t work. It says pilots don’t turn into production. The same report found that projects built with specialised external partners reached deployment about twice as often as internal builds, and that the biggest returns came from unglamorous back-office work, not from customer-facing chatbots.",[283,298,285],{},[168,300,301],{},[15,302,303],{},"The model is rarely the problem. The plumbing is.",[22,305,307],{"id":306},"its-not-the-model","It’s not the model",[15,309,310],{},"When we look at why a pilot stalled, the answer is almost never “the AI wasn’t smart enough”. It is one of three things:",[44,312,313,319,325],{},[47,314,315,318],{},[39,316,317],{},"No live data."," The pilot ran on an export. Connecting it to the real ERP, inbox or helpdesk was “phase two”, and phase two never came.",[47,320,321,324],{},[39,322,323],{},"No owner."," The innovation team built it. The team whose work it would take never asked for it, and never adopted it.",[47,326,327,330],{},[39,328,329],{},"No number."," Success was “a good demo”. Nobody agreed what had to move, so nobody could say it had worked.",[22,332,334],{"id":333},"four-things-the-5-do","Four things the 5% do",[15,336,337],{},"The projects that ship look different from day one. They connect to live systems in week one, not month six. The metric is agreed before a line of code is written, and it belongs to the team whose work changes. People approve the decisions that carry risk, so nobody has to trust the agent blindly. And there is a date: production in weeks, not a roadmap.",[96,339,340,352],{},[99,341,342],{},[102,343,344,346,349],{},[105,345],{},[105,347,348],{},"A PILOT",[105,350,351],{},"A SYSTEM IN PRODUCTION",[115,353,354,367,380,393,406],{},[102,355,356,361,364],{},[120,357,358],{},[39,359,360],{},"Data",[120,362,363],{},"A sample export",[120,365,366],{},"Your live systems",[102,368,369,374,377],{},[120,370,371],{},[39,372,373],{},"Success",[120,375,376],{},"A good demo",[120,378,379],{},"A number agreed on day one",[102,381,382,387,390],{},[120,383,384],{},[39,385,386],{},"Owner",[120,388,389],{},"The innovation team",[120,391,392],{},"The team whose work it takes",[102,394,395,400,403],{},[120,396,397],{},[39,398,399],{},"Humans",[120,401,402],{},"Watching",[120,404,405],{},"Approving what matters",[102,407,408,413,416],{},[120,409,410],{},[39,411,412],{},"Timeline",[120,414,415],{},"Open-ended",[120,417,418],{},"Weeks",[22,420,422],{"id":421},"a-checklist-before-you-start","A checklist before you start",[210,424,426],{"title":425},"Before you approve the next AI project, ask",[214,427,428,431,434,437,440],{},[47,429,430],{},"Which live system does it read and write, in week one?",[47,432,433],{},"Which number moves, and who owns it?",[47,435,436],{},"Which decisions stay with a person?",[47,438,439],{},"What happens on day 30?",[47,441,442],{},"Who owns the code, the prompts and the data?",[22,444,446],{"id":445},"what-this-means-for-you","What this means for you",[15,448,449],{},"If your last pilot is gathering dust, it probably wasn’t a bad idea. It was missing the boring parts. Start from one process that hurts, connect it to the real systems, agree the number and put a date on it. That’s the whole method. It isn’t magic; it’s engineering.",[451,452,453],"prose-footnotes",{},[15,454,455],{},"¹ MIT NANDA, “The GenAI Divide: State of AI in Business 2025”.",{"title":238,"searchDepth":239,"depth":239,"links":457},[458,459,460,461,462],{"id":292,"depth":239,"text":293},{"id":306,"depth":239,"text":307},{"id":333,"depth":239,"text":334},{"id":421,"depth":239,"text":422},{"id":445,"depth":239,"text":446},"2026-09-22","In 2025, MIT’s NANDA initiative looked at how companies were using generative AI and found that about 95% of enterprise pilots delivered no measurable impact on the P&L.1 Billions spent, demos applauded, and almost nothing changed in how the business actually ran.","Why 95% of AI pilots never reach ==production.==","magenta","95",{},"\u002Finsights\u002Fwhy-95-percent-of-ai-pilots-never-reach-production",7,[472,259,473],"what-an-agentic-os-is-and-what-it-isnt","the-30-day-playbook-week-by-week",{"title":274,"description":464},"insights\u002Fwhy-95-percent-of-ai-pilots-never-reach-production","It’s rarely the model. It’s the data, the owner and the missing number. Here’s what the ones that ship do differently.",[478,479,480,481,482],{"id":292,"label":293},{"id":306,"label":307},{"id":333,"label":334},{"id":421,"label":422},{"id":445,"label":446},"9wJDwNO8uXgEwGK-cE1WYthNEN-J5Ic1e7kI_crM30g",{"id":485,"title":486,"author":487,"blobHue":10,"body":488,"category":655,"date":656,"description":492,"draft":248,"extension":249,"featured":248,"headline":657,"hue":276,"letter":658,"meta":659,"navigation":254,"path":660,"readMinutes":256,"related":661,"seo":663,"stem":664,"summary":665,"toc":666,"__hash__":672},"insights_en\u002Finsights\u002Fevery-agent-needs-a-judge.md","Every agent needs a judge",{"name":7,"role":8,"bio":9},{"type":12,"value":489,"toc":648},[490,493,496,500,503,506,509,513,516,584,587,590,594,597,617,620,624,627,630,633,638,642,645],[15,491,492],{},"A language model is very good at sounding right. That is the problem. An answer with a wrong refund amount reads exactly as confidently as one with the right amount, and a person skimming a queue of drafts will not catch it every time.",[15,494,495],{},"So we don’t ask people to catch it. In the marketplace system we built, 90 agents work across eight departments, and every team has a judge: 9 judges in all. A judge is a second model whose only job is to check another agent’s answer before anyone relies on it.",[22,497,499],{"id":498},"why-a-second-model","Why a second model",[15,501,502],{},"Asking the same model to review its own work helps less than you would think. It tends to agree with itself, and it shares the blind spots that produced the mistake in the first place.",[15,504,505],{},"That is why our judges run on a different model family from the agents they check. Different training, different habits, different failure modes. When two unrelated models agree that an answer is grounded and within policy, that means much more than one model agreeing with itself twice.",[15,507,508],{},"A judge also sees the answer differently. The agent was trying to be helpful. The judge is only trying to find what is wrong. Giving it a narrow brief, and nothing else to do, is what makes it useful.",[22,510,512],{"id":511},"block-or-grade-later","Block or grade later",[15,514,515],{},"There are two ways to put a judge in the path, and choosing between them is the main design decision.",[96,517,518,530],{},[99,519,520],{},[102,521,522,524,527],{},[105,523],{},[105,525,526],{},"BLOCK AND REPAIR",[105,528,529],{},"SHIP, THEN GRADE",[115,531,532,545,558,571],{},[102,533,534,539,542],{},[120,535,536],{},[39,537,538],{},"When the judge runs",[120,540,541],{},"Before the answer leaves",[120,543,544],{},"After it has gone out",[102,546,547,552,555],{},[120,548,549],{},[39,550,551],{},"If it fails",[120,553,554],{},"Sent back once with the reasons, then shipped with reservations",[120,556,557],{},"Flagged, counted, fed into the next lessons",[102,559,560,565,568],{},[120,561,562],{},[39,563,564],{},"Cost to the user",[120,566,567],{},"Some extra seconds",[120,569,570],{},"None",[102,572,573,578,581],{},[120,574,575],{},[39,576,577],{},"Use it for",[120,579,580],{},"Anything a customer sees, anything with money",[120,582,583],{},"High volume, low risk, easy to correct",[15,585,586],{},"In the blocking path, a failed answer is not simply rejected. It goes back to the agent once, with the judge’s reasons, and the agent gets a chance to repair it. If the repaired answer still fails, it goes out marked with the judge’s reservations, or, where the rules require it, to a person. Nothing leaves without a verdict.",[15,588,589],{},"In the grading path, the answer goes out and the judge scores it afterwards. The scores show where an agent drifts, and they feed the lessons the system learns overnight. Those lessons are not applied on their own: a person approves each one before agents use it.",[22,591,593],{"id":592},"what-a-judge-checks","What a judge checks",[15,595,596],{},"A judge with a vague brief (“is this a good answer?”) is expensive noise. Ours check specific things, and each check can fail on its own:",[210,598,600],{"title":599},"What a judge checks, every time",[214,601,602,605,608,611,614],{},[47,603,604],{},"Can every number in the answer be traced to data the agent actually read in this run?",[47,606,607],{},"Does it contradict a policy in the shared memory?",[47,609,610],{},"Does it answer the question that was asked, completely?",[47,612,613],{},"Does it propose an action the approval rules do not allow?",[47,615,616],{},"Is the tone right for who will read it?",[15,618,619],{},"The first check is the one that matters most. A refund amount, a delivery date or a stock figure that does not appear in any tool result is treated as invented, however plausible it looks.",[22,621,623],{"id":622},"what-it-costs-and-when-to-skip-it","What it costs, and when to skip it",[15,625,626],{},"A judge is another model call on every answer. It adds tokens, and in the blocking path it adds seconds. For a customer reply that is cheap insurance. For some work, it is waste.",[15,628,629],{},"We skip the judge, or move it to grading later, when the output is low stakes, reversible and cheap to check. An internal tag suggestion that a person sees anyway, or a draft that someone always edits before sending, does not need a second model standing in front of it.",[15,631,632],{},"We also never ask a model to check what code can check. Whether a price is above its floor, whether a date is in the future or whether an order exists are deterministic questions. They get deterministic answers, which are faster and do not have opinions.",[168,634,635],{},[15,636,637],{},"A judge is for judgement. If a rule can be written as code, write it as code.",[22,639,641],{"id":640},"fail-loudly-not-silently","Fail loudly, not silently",[15,643,644],{},"Judges fail too. They time out, or their provider is down for a few minutes. The worst thing a system can do then is pretend the check happened.",[15,646,647],{},"When a judge cannot run, the answer is shown with a visible “not validated” mark, and the person reading it decides whether to rely on it. A silent pass is how a system loses the trust of the people who work with it, and that trust is much harder to rebuild than a timeout is to fix.",{"title":238,"searchDepth":239,"depth":239,"links":649},[650,651,652,653,654],{"id":498,"depth":239,"text":499},{"id":511,"depth":239,"text":512},{"id":592,"depth":239,"text":593},{"id":622,"depth":239,"text":623},{"id":640,"depth":239,"text":641},"engineering","2026-09-01","Every agent needs a ==judge.==","J",{},"\u002Finsights\u002Fevery-agent-needs-a-judge",[260,472,662],"testing-a-campaign-on-customers-who-dont-exist",{"title":486,"description":492},"insights\u002Fevery-agent-needs-a-judge","Why we put a second model in front of every answer, and when it isn’t worth the cost.",[667,668,669,670,671],{"id":498,"label":499},{"id":511,"label":512},{"id":592,"label":593},{"id":622,"label":623},{"id":640,"label":641},"XzL5diXOtcDslArv3P74XXRkQd_4qZoVSP7GUPDaC8E",{"id":674,"title":675,"author":676,"blobHue":10,"body":677,"category":896,"date":897,"description":681,"draft":248,"extension":249,"featured":248,"headline":898,"hue":899,"letter":900,"meta":901,"navigation":254,"path":902,"readMinutes":256,"related":903,"seo":904,"stem":905,"summary":906,"toc":907,"__hash__":913},"insights_en\u002Finsights\u002Fwhat-agents-should-never-do-alone.md","What agents should never do alone",{"name":7,"role":8,"bio":9},{"type":12,"value":678,"toc":889},[679,682,685,689,695,701,707,710,714,717,720,723,727,730,750,753,757,760,868,871,876,880,883,886],[15,680,681],{},"The question we hear most from operations leads is not “can the agent do this?”. It is “what stops it doing something stupid?”. The honest answer is not a better prompt. It is a short list of rules, written by the people who own the risk, that the agent cannot talk its way around.",[15,683,684],{},"Writing those rules is less work than it sounds. Almost everything that should stay with a person falls into three kinds of decision.",[22,686,688],{"id":687},"three-kinds-of-decisions","Three kinds of decisions",[15,690,691,694],{},[39,692,693],{},"Money."," Refunds, credits, discounts, prices, payments. Anything that moves money in or out of the business, or changes what a customer pays.",[15,696,697,700],{},[39,698,699],{},"Promises."," A delivery date, a replacement, an exception to the policy, anything that commits the company to a customer or a supplier. A wrong answer is fixable. A wrong promise has to be honoured or broken.",[15,702,703,706],{},[39,704,705],{},"Anything you can’t undo."," Deleting records, sending to your whole customer base, cancelling or changing an order that is already moving. If the mistake cannot be reversed by clicking something, a person decides.",[15,708,709],{},"Everything else, like reading, classifying, drafting, looking up, summarising and routing, is usually safe for an agent to do alone, provided it is visible afterwards.",[22,711,713],{"id":712},"draft-then-apply","Draft, then apply",[15,715,716],{},"The most useful distinction in approval rules is between preparing an action and executing it. An agent can do all the work of a refund: find the order, check the policy, calculate the amount, write the reply. Then it stops, and a person applies it with one tap.",[15,718,719],{},"This keeps most of the time saving and almost none of the risk. The person is not doing the work. They are checking a finished proposal, with the order, the policy and the amount on one screen.",[15,721,722],{},"Over time, some drafts earn the right to apply themselves. When a person has approved the same kind of action enough times without changes, you can move it below the threshold. That is a decision for the team that owns it, not for the agent.",[22,724,726],{"id":725},"thresholds-not-feelings","Thresholds, not feelings",[15,728,729],{},"“Ask me when it’s important” is not a rule. An agent cannot know what feels important to you. A rule needs a number, a category or a list:",[214,731,732,738,744],{},[47,733,734,737],{},[39,735,736],{},"A number."," Refunds up to a limit are applied; above it, they go to the ops lead.",[47,739,740,743],{},[39,741,742],{},"A category."," Any change to a contract goes to legal, whatever the value.",[47,745,746,749],{},[39,747,748],{},"A list."," New suppliers, key accounts and anything to the press always go to a person.",[15,751,752],{},"Every rule names who decides and where they are asked: in Slack, Teams or email, wherever that person already works. A rule that sends approvals to a dashboard nobody opens is a rule that stops the business.",[22,754,756],{"id":755},"a-worked-example","A worked example",[15,758,759],{},"This is the shape of a rule set for an online store’s support and commerce agents. The limits are yours to set; the structure is what matters.",[96,761,762,775],{},[99,763,764],{},[102,765,766,769,772],{},[105,767,768],{},"ACTION",[105,770,771],{},"AGENT ALONE",[105,773,774],{},"GOES TO A PERSON",[115,776,777,790,803,816,829,842,855],{},[102,778,779,784,787],{},[120,780,781],{},[39,782,783],{},"Order status, tracking, policy questions",[120,785,786],{},"Answers",[120,788,789],{},"Never, unless the customer asks for one",[102,791,792,797,800],{},[120,793,794],{},[39,795,796],{},"Refund",[120,798,799],{},"Drafts every one, applies small ones",[120,801,802],{},"Above €500 in this example, the ops lead",[102,804,805,810,813],{},[120,806,807],{},[39,808,809],{},"Voucher or discount",[120,811,812],{},"Proposes, inside the margin floor",[120,814,815],{},"Anything outside the agreed limits",[102,817,818,823,826],{},[120,819,820],{},[39,821,822],{},"Price change",[120,824,825],{},"Never writes a price",[120,827,828],{},"The pricing owner, after the margin check",[102,830,831,836,839],{},[120,832,833],{},[39,834,835],{},"Delivery date",[120,837,838],{},"Quotes what the courier data says",[120,840,841],{},"Any exception or guarantee",[102,843,844,849,852],{},[120,845,846],{},[39,847,848],{},"Order change or cancellation",[120,850,851],{},"Drafts",[120,853,854],{},"Always applied by a person",[102,856,857,862,865],{},[120,858,859],{},[39,860,861],{},"Campaign to the whole base",[120,863,864],{},"Prepares and simulates",[120,866,867],{},"Always sent by a person",[15,869,870],{},"Start with the right-hand column. The right-hand column is the list of things your team has decided to keep. Everything to its left is work they no longer have to do.",[168,872,873],{},[15,874,875],{},"If you can’t undo it, a person does it.",[22,877,879],{"id":878},"the-veto-that-isnt-a-model","The veto that isn’t a model",[15,881,882],{},"Some rules are too important to leave to a language model, even one that is being checked. Margin is the clearest case.",[15,884,885],{},"In the marketplace system we built, no agent ever writes a price. Agents can propose a discount or a clearance offer, but every proposal passes through a margin guardrail first. The guardrail is plain code, not a model. It calculates the floor for that product after returns, fees and shipping, and anything below it is vetoed. There is nothing to persuade and no prompt to get wrong.",[15,887,888],{},"That is the pattern we use wherever a rule can be expressed as arithmetic or a lookup. The model proposes, deterministic code checks, and a person approves what the rules say a person approves. Each layer does the thing it is good at, and none of them is asked to be the last line of defence alone.",{"title":238,"searchDepth":239,"depth":239,"links":890},[891,892,893,894,895],{"id":687,"depth":239,"text":688},{"id":712,"depth":239,"text":713},{"id":725,"depth":239,"text":726},{"id":755,"depth":239,"text":756},{"id":878,"depth":239,"text":879},"playbooks","2026-09-08","What agents should never do ==alone.==","sun","!",{},"\u002Finsights\u002Fwhat-agents-should-never-do-alone",[259,473,472],{"title":675,"description":681},"insights\u002Fwhat-agents-should-never-do-alone","A practical way to write approval rules: money, promises and anything you can’t undo.",[908,909,910,911,912],{"id":687,"label":688},{"id":712,"label":713},{"id":725,"label":726},{"id":755,"label":756},{"id":878,"label":879},"mWnCbu3ZKOI9CJrpjxbakDDnQwkJuenNM8EI7HSjdMA",1790618465012]