Keep a steady time counter (TAI) apart from a position in the solar system. The split makes replayed agent memory match byte for byte—within limits set by astronomy and metrology.
Agentic risk awareness is an operational discipline: model the failure paths, constrain authority, force uncertainty to surface, and continuously test whether the system still behaves under stress.
A controlled incident drill shows how scope validation, lineage, blast-radius assessment, kill paths, and rollback evidence make agent failure visible enough to engineer against.
Risk often appears between changes, not inside one change. Agent systems become dangerous when short-lived input hardens into durable memory and outlives the assumptions that made it safe.
Agent systems need a memory control plane because retrieval safety and historical truth require enforceable policy and clear lineage, not mutable notes.
ControlOps is a catalog project that turns scope validation, decision lineage, blast-radius assessment, and kill-path auditing into testable operational checks for agent systems.