Get started
Security & GovernanceGovernanceEvidenceSelf-hosted

Ten reasons to run your AI agents on an enterprise-grade harness

A harness is not a cage. It is the rig that lets something powerful do real work without doing real damage. Ten reasons to put your AI agents on one, and to try it yourself rather than take our word for it.

Adam Cowles30 September 20264 min read
A luminous energy core held within a geometric rig, dark background

A harness is not a cage. It is the rig that lets something powerful do real work without doing real damage. If you are giving AI agents access to your inbox, your servers, your customers or your money, the agent is the easy part. The harness around it is what decides whether you can sleep.

Here are ten reasons to put your agents on one, and to try it yourself rather than take our word for it.

1. Your agents can act, and you can still prove what they did.

Most AI tooling gives you an agent and a shrug. When something happens at two in the morning, "I think it did X" is not good enough. A harness records every governed action as evidence you can go back to: what it did, why, and under whose authority.

2. The stop button is real.

Not a setting that asks the agent nicely. A containment layer that can halt what an agent is doing, held outside the agent itself, so a misbehaving or prompt-injected agent cannot simply talk its way past it.

3. A human stays in the loop exactly where it matters.

You decide which actions run on their own and which wait for a person to say yes. Refund above a threshold, a production deploy, a message to a customer: the agent proposes, a human approves, and the approval is part of the record.

4. Rules come before capability, not after.

You set what an agent may and may not do in advance, and the system holds that line. The agent can answer support mail but not issue large refunds. It can update the site but not drop the database. Boundaries are configuration, not a promise.

5. It is yours. Self-hosted, your infrastructure, your keys.

This is not a place you upload your secrets and hope. It runs on your own machines under Docker Compose, with your credentials staying with you. The control plane you use to govern AI is not itself a black box in someone else's cloud.

6. One tenant's data cannot leak into another's, and you can make us prove it.

Isolation you can test, not a marketing word. The standard we hold ourselves to is a live check, both directions, on the running system, witnessed so it can be re-verified. We publish how we do it on our own security page and invite you to hold us to it.

7. The evidence proves itself, so you do not have to trust us.

The records are designed to be verifiable independently: a reader can recompute and check them offline, without calling back to us. Evidence that only works if you already trust the vendor is not evidence.

8. It speaks open protocols, not a proprietary dialect.

The evidence, the audit format and the receipts are built on open specifications rather than a format only we can read. You are not signing up to a language with exactly one speaker.

9. You can start small, and start free.

You do not have to commit to an enterprise rollout to see whether this fits. Stand up the core yourself and put one real workflow through it. The cheapest way to evaluate a harness is to run something you actually care about on it and watch what it records.

10. We hold ourselves to the standard we sell.

We run governed security scans against our own production surface and publish the findings, including the ones still open. When our own systems fall over, and they do, we fix the cause and say so. A vendor who only ever shows you the wins is showing you marketing, not evidence.

Try it, do not take our word for it

The whole point of a harness is that it does not ask for your trust, it earns it by recording what happens. So the honest invitation is not "believe us", it is "run it". Stand up the self-hosted core, put one workflow you care about through it, and read the evidence it produces. If it does not tell you something true and useful about what your agents are doing, we have not done our job.

get started, self-hosted · see how we audit ourselves · how the evidence works