17/06/2026
In March, an AI agent wiped 1.9 million rows from a production database. Backups included.
Every command it ran was technically correct. It just had no idea it was operating on a live system, because that knowledge existed only in the engineer's head.
No governance layer.
No approval gate.
Nothing between the agent and production.
This is the part of the agentic coding conversation that doesn't get enough airtime.
Business users will automate their own processes, whether IT is involved or not. The tools exist. The pressure to reduce manual effort is real. The question is whether IT is in the loop when it happens, or finds out six months later that a critical workflow has been running through an ungoverned AI tool nobody approved.
CoderFlow keeps automation inside IT's control from the start. Isolated containers. Scoped access. Every action logged. Approval gates before anything touches production.
IT builds it. IT controls it. That's the only model that doesn't create a bigger problem than it solves.
See how IT-controlled agent automation works on IBM i: https://hubs.la/Q04kW_8Z0