{
  "id": 13566314,
  "title": "Prove the Guardrails Worked: Turning a LangChain Agent's Run Into a Replay Bundle",
  "url": "https://urgent.news/2026/10/10/prove-the-guardrails-worked-turning-a-langchain-agents-run-into-a",
  "topic": "ai",
  "section": "AI",
  "published": "2026-10-10T22:50:38.000Z",
  "source": {
    "name": "Dev.to",
    "slug": "dev-to",
    "url": "https://dev.to/cognous/prove-the-guardrails-worked-turning-a-langchain-agents-run-into-a-replay-bundle-1hn1"
  },
  "original_language": "en",
  "account": "A CISO inquired about the behavior of an AI agent in a specific run, asking for details about the actual actions taken during that particular execution. Directly searching through every server's application logs to answer such a question is not an efficient solution. Cognous' Open Control Stack was designed to address this issue, providing a way to answer the question in minutes rather than days.\n\nThe Open Control Stack organizes AI agent governance into four layers: declaring what an agent may do, controlling what it actually does at runtime, replaying any specific run after the fact, and packaging the result as evidence for review. Wiring the Agent Action Manifest into LangChain covered the first layer, while wiring LangChain into the Agent Control Plane covered the second layer.\n\nThe Control Plane records each decision made by the agent, answering \"what did the policy decide.\" However, to provide a record that can be handed to an auditor, the RunRecorder export from the Control Plane's object model needs to be turned into something portable, independently verifiable, and safe to share outside the team that built the agent. This is where the Replay layer comes in.\n\nThe Replay layer defines its own schema for a portable replay bundle called AgentReplayBundle, which exists independently from the Control Plane. However, there is a mismatch between the Control Plane's export and the arb's schema, requiring a mapping step to convert the Control Plane's internal snapshot into the public interchange format necessary for validation, redaction, signing, and verification.",
  "summary": "A CISO asking about an AI agent incident does not ask what the agent was supposed to do. They ask what it actually did, on this run, at this time, against this policy. Answering that by grepping through every server's application logs is not an answer. When the bosses want answers, it's not time for a research project. Cognous's Open Control Stack exists to make that question answerable in…",
  "key_points": [],
  "editors_take": null,
  "illustration": null,
  "coverage": {
    "outlets": 1,
    "also_reported_by": []
  },
  "ai_generated": true,
  "disclaimer": "Summaries, key points and the editor’s take are written by software from other outlets’ reporting and may contain errors — always check the linked original."
}