The model is the easy part. The plumbing is what kills you.
70% of AI pilots die before production — at the governance layer, not the model layer. I build the layer that ships: constrained identities, attributable actions, human gates and kill switches for agents operating under real regulators.
Four regulated systems, in production.
Most governance consultants have zero real deployments. These four did the persuading before this page did. Attribution is fixed — figures never move between cases.
Four non-negotiables decide whether AI ships.
Not principles on a slide — controls in the runtime. Each pillar is anchored to one of the four deployments above.
Intelligence is rented. Piping is owned.
Agents run least-privilege service accounts. Destructive actions are blocked at the keyring, not by instruction — zero default write permissions.
Every decision, query and citation is logged on a read-only ledger. Any action is traceable — and reversible — in under 30 seconds.
High-stakes actions pause and wait for manual authorization. The agent cannot execute financial or legal tasks on its own.
Continuous telemetry watches speed, spend and error volume. On breach the agent auto-suspends — before damage, not after.
Instructions are a wish. The keyring is a guardrail.
Three tiers. One conversation.
Read-only audit, full implementation, or end-to-end orchestration. Scoped to the size of the system, not the hours.
Read-only audit, EU AI Act classification and a risk register. The artifact a board can act on.
The four pillars built into production systems — constrained identities, attributable actions, gates and kill thresholds, live.
Multi-system, multi-client governance across the full lifecycle — the operating layer for an enterprise agent estate.
The method in long form — and in your runtime.
The four pillars written long-form, each chapter anchored to one verified deployment. The 70% pilot-death problem, and the four non-negotiables that decide whether AI ships.
Read the framework →The open-source layer that enforces the four pillars in your agent runtime. aiplumber.dev is the consultancy and the method; Kleiber is the installable proof.
Install the layer →Regulatory currency: EU AI Act high-risk (Annex III) obligations apply from 2 August 2026 (operative date; subject to pending Digital Omnibus revisions — verify current status before relying on it).