“Fetched the docs.
Finished the task.”
- Opened reference material
- Prepared the answer
- Run completed
A useful story.
But who holds the original?
Independent evidence.
A circuit breaker outside the agent’s reach.
Humming Arms seals the actions your agents take and puts a local switch at the boundaries they use.
Policy violation · dns.query → egress revoked
A recording sequence: normal actions are sealed with fingerprints. A DNS action crosses policy, and the independent breaker cuts egress. This is a product walkthrough.
A trace explains a run. An independent record shows the actions that crossed the boundary.
A useful story.
But who holds the original?
Absent from the narrative
dns.querySEALEDMISSING FROM THE STORYSealed actions. Independent custody.
A switch that can act on them.
Record. Detect. Contain.
Then reconstruct.
Tools, files, network
Bind the action to an identity.
Receipts linked
Link receipts. Sign their source.
Boundary policy
Apply local rules. No remote call.
Apply the control
Stop access. Check the outcome.
Actions to answers
Check integrity. Connect the timeline.
The agent does the work. It does not own the recorder or the breaker.
Tap a part
Python and TypeScript connect tool calls and results to identities and sessions. Signing keys stay outside the sandbox.
Network proxies and Model Context Protocol (MCP) gateways observe and mediate requests to tools and external services.
Host sensors, including macOS, observe processes, files and networks. Coverage follows instrumented paths and permissions.
The recorder links and signs actions outside agent control. Durable local buffering keeps evidence during service outages.
A separate process applies boundary policy, checks stops and escalates failures. The agent does not hold its own switch.
Pause the run. Remove the process. Revoke the key. Cut the way out.
Process running · credential active · egress connected
Linked receipts, signed checkpoints and external anchors. An open verifier that does not depend on the console’s verdict.
Evidence
verify agent.evidenceExport walkthrough ready.
Different questions. Complementary tools.
Traces
Follow execution. Debug a tool call. Find the slow step.
Execution & performanceEvaluations
Assess output quality and behavior against your criteria.
Quality & behaviorHumming Arms
Check action evidence. Control access at instrumented boundaries.
Evidence & controlClear answers for the paths you need to protect.
No. Keep tracing for debugging, evaluations for quality, and observability for cost and performance. Humming Arms adds independent action evidence and controls at instrumented boundaries.
No. Monitoring and enforcement use actions and identities. Model reasoning can add context, but it is not a dependency for a policy decision or a stop.
A stop reaches only the boundaries it controls. Killing a process cannot undo a completed request. Credential revocation and egress controls need the right authority. Map those boundaries and test the stop outcome for your deployment. A requested stop is not proof of containment; failed stops escalate for human response.
Missing, invalid or stale policy must not silently permit protected actions. High-risk network and credential boundaries default to denial. Stop failures require escalation, never a success label.
No. Hash chains and signatures establish integrity within the recorded sequence, not complete capture. Uninstrumented actions can be absent from a valid record. External anchors expose rewriting relative to a checkpoint; trusted signing keys and sensor coverage still matter.
Start with the agents, tools, network paths and credentials you need to control. Agree on evidence capture, privacy and retention, then exercise allowed and denied actions. Use a demo to work through those boundaries and pricing.
Bring your agents, tools and credentials.
Map the record and the controls with Humming Arms.