﻿<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0">
    <channel>
        <title>Cycles Blog</title>
        <link>https://runcycles.io/blog/</link>
        <description>News, guides, and updates from the Cycles team.</description>
        <lastBuildDate>Fri, 14 Aug 2026 08:10:52 GMT</lastBuildDate>
        <docs>https://validator.w3.org/feed/docs/rss2.html</docs>
        <generator>https://github.com/jpmonette/feed</generator>
        <language>en</language>
        <copyright>Copyright 2025-present RunCycles.io</copyright>
        <item>
            <title><![CDATA["Durable Budget Control for LangChain Agents"]]></title>
            <link>https://runcycles.io/blog/durable-budget-control-for-langchain-agents</link>
            <guid isPermaLink="false">https://runcycles.io/blog/durable-budget-control-for-langchain-agents</guid>
            <pubDate>Fri, 07 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Build a LangChain agent that gates model and tool calls before execution, captures actual usage, and preserves settlement after failures."]]></description>
            <author>Albert Mavashev</author>
            <category>langchain</category>
            <category>tutorial</category>
            <category>budgets</category>
            <category>reliability</category>
            <category>middleware</category>
            <category>agents</category>
        </item>
        <item>
            <title><![CDATA["The Model Call Succeeded. Then the Process Died."]]></title>
            <link>https://runcycles.io/blog/the-model-call-succeeded-then-the-process-died</link>
            <guid isPermaLink="false">https://runcycles.io/blog/the-model-call-succeeded-then-the-process-died</guid>
            <pubDate>Fri, 07 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["How Cycles preserves known AI agent spend across lost responses, expired reservations, credential failures, and process restarts."]]></description>
            <author>Albert Mavashev</author>
            <category>engineering</category>
            <category>reliability</category>
            <category>SDKs</category>
            <category>recovery</category>
            <category>langchain</category>
            <category>runtime-authority</category>
        </item>
        <item>
            <title><![CDATA["NIST Agent Overlays Need Task-Scoped Permissions"]]></title>
            <link>https://runcycles.io/blog/nist-agent-overlays-need-task-scoped-permissions</link>
            <guid isPermaLink="false">https://runcycles.io/blog/nist-agent-overlays-need-task-scoped-permissions</guid>
            <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["NIST's COSAiS is drafting SP 800-53 overlays for AI agents. CSA identifies task-scoped permissions among several gaps operators should address in 2026."]]></description>
            <author>Albert Mavashev</author>
            <category>governance</category>
            <category>compliance</category>
            <category>NIST</category>
            <category>agents</category>
            <category>security</category>
            <category>runtime-authority</category>
            <category>standards</category>
        </item>
        <item>
            <title><![CDATA["Safe Lease Heartbeats for AI Agents"]]></title>
            <link>https://runcycles.io/blog/safe-agent-lease-heartbeats-remaining-ttl</link>
            <guid isPermaLink="false">https://runcycles.io/blog/safe-agent-lease-heartbeats-remaining-ttl</guid>
            <pubDate>Sat, 01 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Why safe agent lease heartbeats require server-authoritative remaining TTL, monotonic timing, bounded retry windows, and fresh idempotent replay responses."]]></description>
            <author>Albert Mavashev</author>
            <category>engineering</category>
            <category>distributed-systems</category>
            <category>leases</category>
            <category>heartbeats</category>
            <category>retries</category>
            <category>idempotency</category>
            <category>SDKs</category>
        </item>
        <item>
            <title><![CDATA["Proving a Critical-Path Agent Safety Gate"]]></title>
            <link>https://runcycles.io/blog/proving-a-critical-path-agent-safety-gate</link>
            <guid isPermaLink="false">https://runcycles.io/blog/proving-a-critical-path-agent-safety-gate</guid>
            <pubDate>Fri, 31 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["How Cycles tested a critical-path agent gate for latency, saturation, fail-closed behavior, ledger correctness, and durable recovery across four SDKs."]]></description>
            <author>Albert Mavashev</author>
            <category>engineering</category>
            <category>benchmarks</category>
            <category>reliability</category>
            <category>SDKs</category>
            <category>conformance</category>
            <category>runtime-authority</category>
        </item>
        <item>
            <title><![CDATA["MCP 2026-07-28: What Agent Operators Must Change"]]></title>
            <link>https://runcycles.io/blog/mcp-2026-07-28-migration-guide-agent-operators</link>
            <guid isPermaLink="false">https://runcycles.io/blog/mcp-2026-07-28-migration-guide-agent-operators</guid>
            <pubDate>Tue, 28 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["The MCP 2026-07-28 release candidate removes sessions and adds routing headers. What operators should prepare before the final specification is published."]]></description>
            <author>Albert Mavashev</author>
            <category>MCP</category>
            <category>engineering</category>
            <category>agents</category>
            <category>migration</category>
            <category>production</category>
            <category>protocols</category>
            <category>runtime-authority</category>
        </item>
        <item>
            <title><![CDATA["Prove You Had Controls: Agent Liability in 2026"]]></title>
            <link>https://runcycles.io/blog/prove-you-had-controls-agent-liability-2026</link>
            <guid isPermaLink="false">https://runcycles.io/blog/prove-you-had-controls-agent-liability-2026</guid>
            <pubDate>Thu, 23 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["The CMA says you're liable for what your agents do. Contracts exclude the damages. Insurers ask for oversight evidence. Signed decision records serve all three."]]></description>
            <author>Albert Mavashev</author>
            <category>governance</category>
            <category>compliance</category>
            <category>liability</category>
            <category>agents</category>
            <category>audit</category>
            <category>evidence</category>
            <category>runtime-authority</category>
            <category>enterprise</category>
        </item>
        <item>
            <title><![CDATA["Announcing Cycles Budget Guard for Claude Code"]]></title>
            <link>https://runcycles.io/blog/cycles-budget-guard-hard-enforcement-for-claude-code</link>
            <guid isPermaLink="false">https://runcycles.io/blog/cycles-budget-guard-hard-enforcement-for-claude-code</guid>
            <pubDate>Wed, 22 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Cycles Budget Guard for Claude Code adds dispatch-path enforcement, blocks denied gated tools before they run, and safely retries recorded-call settlement."]]></description>
            <author>Albert Mavashev</author>
            <category>announcement</category>
            <category>claude-code</category>
            <category>budgets</category>
            <category>budget-enforcement</category>
            <category>runtime-authority</category>
            <category>MCP</category>
            <category>security</category>
        </item>
        <item>
            <title><![CDATA["OWASP Agentic Top 10: What Can Be Enforced?"]]></title>
            <link>https://runcycles.io/blog/owasp-agentic-top-10-what-can-be-enforced</link>
            <guid isPermaLink="false">https://runcycles.io/blog/owasp-agentic-top-10-what-can-be-enforced</guid>
            <pubDate>Mon, 20 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["OWASP's June 2026 data says prompt injection touches six of ten agentic risks. Which ASI categories a pre-execution authority layer can actually enforce."]]></description>
            <author>Albert Mavashev</author>
            <category>security</category>
            <category>OWASP</category>
            <category>agents</category>
            <category>governance</category>
            <category>runtime-authority</category>
            <category>action-control</category>
            <category>compliance</category>
        </item>
        <item>
            <title><![CDATA["Lethal Trifecta, Rule of Two, and Metered Authority"]]></title>
            <link>https://runcycles.io/blog/lethal-trifecta-rule-of-two-metered-authority</link>
            <guid isPermaLink="false">https://runcycles.io/blog/lethal-trifecta-rule-of-two-metered-authority</guid>
            <pubDate>Thu, 16 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Willison's lethal trifecta and Meta's Rule of Two both subtract agent capabilities. A third option: keep all three legs and meter the most dangerous one."]]></description>
            <author>Albert Mavashev</author>
            <category>security</category>
            <category>agents</category>
            <category>prompt-injection</category>
            <category>runtime-authority</category>
            <category>action-control</category>
            <category>architecture</category>
            <category>best-practices</category>
        </item>
        <item>
            <title><![CDATA["Agent Identity Is Not Agent Authority"]]></title>
            <link>https://runcycles.io/blog/agent-identity-is-not-agent-authority</link>
            <guid isPermaLink="false">https://runcycles.io/blog/agent-identity-is-not-agent-authority</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Okta, Microsoft Entra, and A2A now give AI agents identities. Identity answers who an agent is — not what it may do next, how much, or at whose expense."]]></description>
            <author>Albert Mavashev</author>
            <category>identity</category>
            <category>agents</category>
            <category>governance</category>
            <category>runtime-authority</category>
            <category>security</category>
            <category>enterprise</category>
            <category>comparisons</category>
        </item>
        <item>
            <title><![CDATA["The Moltbook Exposure: 1.5M Agent Tokens, No Gates"]]></title>
            <link>https://runcycles.io/blog/moltbook-exposure-agent-tokens-no-gates</link>
            <guid isPermaLink="false">https://runcycles.io/blog/moltbook-exposure-agent-tokens-no-gates</guid>
            <pubDate>Thu, 09 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Wiz found 1.5M agent API tokens exposed on Moltbook via a hardcoded Supabase key. What it teaches about agent identity, credentials, and runtime authority."]]></description>
            <author>Albert Mavashev</author>
            <category>incidents</category>
            <category>security</category>
            <category>agents</category>
            <category>identity</category>
            <category>api-keys</category>
            <category>supply-chain</category>
            <category>runtime-authority</category>
            <category>governance</category>
        </item>
        <item>
            <title><![CDATA["The First Budget to Put on a Production Agent"]]></title>
            <link>https://runcycles.io/blog/first-budget-to-put-on-a-production-agent</link>
            <guid isPermaLink="false">https://runcycles.io/blog/first-budget-to-put-on-a-production-agent</guid>
            <pubDate>Tue, 07 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["The first production agent budget should be small, scoped, and tied to one painful failure mode. Choose tenant, run, or tool budgets based on blast radius."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["AI Coding Agents: When the Token Bill Comes Due"]]></title>
            <link>https://runcycles.io/blog/ai-coding-agents-when-the-token-bill-comes-due</link>
            <guid isPermaLink="false">https://runcycles.io/blog/ai-coding-agents-when-the-token-bill-comes-due</guid>
            <pubDate>Mon, 06 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Uber exhausted its 2026 AI coding budget by April. Per-developer token use rose 18.6x in nine months. Why seat-era controls fail and what replaces them."]]></description>
            <author>Albert Mavashev</author>
            <category>costs</category>
            <category>agents</category>
            <category>coding-agents</category>
            <category>budgets</category>
            <category>production</category>
            <category>incidents</category>
            <category>finops</category>
            <category>runtime-authority</category>
        </item>
        <item>
            <title><![CDATA["EU AI Act: What Actually Happens on August 2, 2026"]]></title>
            <link>https://runcycles.io/blog/eu-ai-act-what-actually-happens-august-2-2026</link>
            <guid isPermaLink="false">https://runcycles.io/blog/eu-ai-act-what-actually-happens-august-2-2026</guid>
            <pubDate>Mon, 06 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["The Digital Omnibus delayed the EU AI Act's high-risk rules to 2027 and 2028. What still lands August 2, 2026: Article 50 transparency and GPAI enforcement."]]></description>
            <author>Albert Mavashev</author>
            <category>governance</category>
            <category>compliance</category>
            <category>EU AI Act</category>
            <category>regulation</category>
            <category>agents</category>
            <category>runtime-authority</category>
            <category>transparency</category>
            <category>GPAI</category>
        </item>
        <item>
            <title><![CDATA["Agent Security Controls Map"]]></title>
            <link>https://runcycles.io/blog/agent-security-controls-map</link>
            <guid isPermaLink="false">https://runcycles.io/blog/agent-security-controls-map</guid>
            <pubDate>Sun, 05 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Map AI agent security controls across prompt guardrails, tool guardrails, observability, identity, and runtime authority so each layer has a clear job."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["AI Agent Spend Limits Are Not Rate Limits"]]></title>
            <link>https://runcycles.io/blog/ai-agent-spend-limits-are-not-rate-limits</link>
            <guid isPermaLink="false">https://runcycles.io/blog/ai-agent-spend-limits-are-not-rate-limits</guid>
            <pubDate>Fri, 03 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["AI agent spend limits cap cumulative cost before execution. Rate limits cap request velocity. Systems need both because agents can spend too much slowly."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["Usage-Based Pricing for AI Agents"]]></title>
            <link>https://runcycles.io/blog/usage-based-pricing-for-ai-agents</link>
            <guid isPermaLink="false">https://runcycles.io/blog/usage-based-pricing-for-ai-agents</guid>
            <pubDate>Wed, 01 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Usage-based pricing for AI agents needs tenant budgets, per-run limits, and pre-execution enforcement so one customer cannot consume the margin for everyone."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["How to Add Budget Limits to an MCP Server"]]></title>
            <link>https://runcycles.io/blog/how-to-add-budget-limits-to-an-mcp-server</link>
            <guid isPermaLink="false">https://runcycles.io/blog/how-to-add-budget-limits-to-an-mcp-server</guid>
            <pubDate>Mon, 29 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Add budget limits to an MCP server by wrapping tool handlers with reserve, commit, and release checks before side effects or runaway loops can execute."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["A2A vs MCP vs Runtime Authority"]]></title>
            <link>https://runcycles.io/blog/a2a-vs-mcp-vs-runtime-authority</link>
            <guid isPermaLink="false">https://runcycles.io/blog/a2a-vs-mcp-vs-runtime-authority</guid>
            <pubDate>Sat, 27 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["A2A connects agents, MCP connects tools, and runtime authority decides whether an agent action should run. Use all three without confusing their roles."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["OpenAI Guardrails vs Runtime Budgets"]]></title>
            <link>https://runcycles.io/blog/openai-agents-tool-guardrails-vs-runtime-budgets</link>
            <guid isPermaLink="false">https://runcycles.io/blog/openai-agents-tool-guardrails-vs-runtime-budgets</guid>
            <pubDate>Thu, 25 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["OpenAI Agents SDK guardrails validate inputs, outputs, and function tools. Runtime budgets decide whether the next agent action should still run in production."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["What Goes in an AI Agent Audit Packet?"]]></title>
            <link>https://runcycles.io/blog/what-goes-in-an-ai-agent-audit-packet</link>
            <guid isPermaLink="false">https://runcycles.io/blog/what-goes-in-an-ai-agent-audit-packet</guid>
            <pubDate>Wed, 24 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["A practical audit packet checklist for AI agent controls: denial receipts, verifier output, signer keys, retention policy, trace IDs, and findings for reviews."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["Run the Audit Evidence Drill Before Audit Day"]]></title>
            <link>https://runcycles.io/blog/run-audit-evidence-drill-before-audit-day</link>
            <guid isPermaLink="false">https://runcycles.io/blog/run-audit-evidence-drill-before-audit-day</guid>
            <pubDate>Tue, 23 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["A practical drill for proving an AI agent denial months later: fetch the receipt, resolve signer authority, test key rotation, and document retention gaps."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["Audit Evidence Has to Survive Production"]]></title>
            <link>https://runcycles.io/blog/audit-evidence-has-to-survive-production</link>
            <guid isPermaLink="false">https://runcycles.io/blog/audit-evidence-has-to-survive-production</guid>
            <pubDate>Sun, 21 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Signed receipts only matter if the pipeline survives crashes, key rotation, retention, and operator mistakes. A production checklist for AI agent evidence."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["Rolling Out Action Authority on New Surfaces"]]></title>
            <link>https://runcycles.io/blog/rolling-out-action-authority-on-new-surfaces</link>
            <guid isPermaLink="false">https://runcycles.io/blog/rolling-out-action-authority-on-new-surfaces</guid>
            <pubDate>Sat, 20 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Memory, merge, click, voice — the rollout playbook: per-surface inventory, shadow mode, gate primitives, cutover order, rollback tree, and runbook entries."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["Rotating Keys Shouldn't Rewrite History"]]></title>
            <link>https://runcycles.io/blog/rotating-keys-shouldnt-rewrite-history</link>
            <guid isPermaLink="false">https://runcycles.io/blog/rotating-keys-shouldnt-rewrite-history</guid>
            <pubDate>Fri, 19 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Retired signing keys with validity windows keep old receipts verifiable after rotation — but bound the active key, or it can forge backdated evidence."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["A Valid Signature Doesn't Tell You Who Signed It"]]></title>
            <link>https://runcycles.io/blog/a-valid-signature-doesnt-tell-you-who-signed-it</link>
            <guid isPermaLink="false">https://runcycles.io/blog/a-valid-signature-doesnt-tell-you-who-signed-it</guid>
            <pubDate>Wed, 17 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["A valid signature proves bytes came from a key, not that the key is authoritative. Learn how signer resolution and key rotation establish durable trust."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["A 200 OK Is Not an Audit Trail"]]></title>
            <link>https://runcycles.io/blog/a-200-ok-is-not-an-audit-trail</link>
            <guid isPermaLink="false">https://runcycles.io/blog/a-200-ok-is-not-an-audit-trail</guid>
            <pubDate>Sun, 14 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["A 200 response proves a request succeeded, not why an agent action was allowed. Learn how signed CyclesEvidence receipts provide portable audit evidence."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["What Four New Surfaces Taught Us"]]></title>
            <link>https://runcycles.io/blog/what-four-new-surfaces-taught-us</link>
            <guid isPermaLink="false">https://runcycles.io/blog/what-four-new-surfaces-taught-us</guid>
            <pubDate>Sat, 13 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Memory writes, merges, clicks, voice. Each needed a different shape of the gate. The action authority lifecycle absorbed all four — here's what it means."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["Reserving Authority When You Can't Pause"]]></title>
            <link>https://runcycles.io/blog/voice-agent-budgets-when-you-cant-pause-to-reserve</link>
            <guid isPermaLink="false">https://runcycles.io/blog/voice-agent-budgets-when-you-cant-pause-to-reserve</guid>
            <pubDate>Sat, 06 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["How to budget realtime voice agents with call-level reservations, local metering, turn-boundary checks, separately gated tools, and provider usage records."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["Computer-Use Agents Have No Tool Boundary"]]></title>
            <link>https://runcycles.io/blog/computer-use-agents-have-no-tool-boundary</link>
            <guid isPermaLink="false">https://runcycles.io/blog/computer-use-agents-have-no-tool-boundary</guid>
            <pubDate>Sat, 30 May 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["OpenAI's CUA, Anthropic Computer Use, Browser-Use collapse the tool surface to click and type. Risk has to move from tool name to target, intent, and context."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["When Coding Agents Press Merge"]]></title>
            <link>https://runcycles.io/blog/when-coding-agents-press-merge</link>
            <guid isPermaLink="false">https://runcycles.io/blog/when-coding-agents-press-merge</guid>
            <pubDate>Sat, 23 May 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Devin, Codex Cloud, Claude Code yolo mode now reach the merge button — direct call or auto-merge via branch protection. Treat merge as a tiered action."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["Agent Memory Writes Are Actions, Too"]]></title>
            <link>https://runcycles.io/blog/agent-memory-writes-are-actions-too</link>
            <guid isPermaLink="false">https://runcycles.io/blog/agent-memory-writes-are-actions-too</guid>
            <pubDate>Sat, 16 May 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Agent memory writes change future runs. Treat mem0, Letta, Zep, and Claude-style memory mutations as RISK_POINTS-budgeted actions under runtime authority."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["Closing the Estimate-Actual Gap with cost_fn"]]></title>
            <link>https://runcycles.io/blog/langchain-runcycles-cost-fn-actual-cost</link>
            <guid isPermaLink="false">https://runcycles.io/blog/langchain-runcycles-cost-fn-actual-cost</guid>
            <pubDate>Fri, 15 May 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["langchain-runcycles 0.2.0 adds cost_fn to CyclesModelGate: reserve at estimate, commit at the LangChain ModelResponse's actual reported token usage per call."]]></description>
            <author>Albert Mavashev</author>
            <category>langchain</category>
            <category>engineering</category>
            <category>runtime-authority</category>
            <category>budgets</category>
            <category>integrations</category>
            <category>agents</category>
        </item>
        <item>
            <title><![CDATA["Why a Delete-Delay Isn't the PocketOS Fix"]]></title>
            <link>https://runcycles.io/blog/pocketos-aftermath-delete-delay-vs-scoped-tokens</link>
            <guid isPermaLink="false">https://runcycles.io/blog/pocketos-aftermath-delete-delay-vs-scoped-tokens</guid>
            <pubDate>Fri, 15 May 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Railway slowed destructive deletes after the 9-second wipe. The legacy account-token model is unchanged. The structural fix is scoped tokens + runtime gates."]]></description>
            <author>Albert Mavashev</author>
            <category>incidents</category>
            <category>runtime-authority</category>
            <category>governance</category>
            <category>security</category>
            <category>agents</category>
            <category>production</category>
        </item>
        <item>
            <title><![CDATA["Pre-Call Budget Reservation as a Spring AI Advisor"]]></title>
            <link>https://runcycles.io/blog/cycles-spring-ai-starter-advisors-walkthrough</link>
            <guid isPermaLink="false">https://runcycles.io/blog/cycles-spring-ai-starter-advisors-walkthrough</guid>
            <pubDate>Thu, 14 May 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["How cycles-spring-ai-starter inserts reserve-commit-release into Spring AI's advisor chain — call advisor, Flux streaming, SubjectResolver, tool gating."]]></description>
            <author>Albert Mavashev</author>
            <category>spring-ai</category>
            <category>java</category>
            <category>integrations</category>
            <category>runtime-authority</category>
            <category>agents</category>
            <category>engineering</category>
        </item>
        <item>
            <title><![CDATA["AP2 Open-Mandate Idempotency: Scope and Limits"]]></title>
            <link>https://runcycles.io/blog/ap2-open-mandate-consume-once-runtime-idempotency</link>
            <guid isPermaLink="false">https://runcycles.io/blog/ap2-open-mandate-consume-once-runtime-idempotency</guid>
            <pubDate>Wed, 13 May 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Cycles collapses AP2 budget accounting and rejects divergent retries by open_mandate_hash, but PSP idempotency is still required for consume-once payments."]]></description>
            <author>Albert Mavashev</author>
            <category>engineering</category>
            <category>runtime-authority</category>
            <category>idempotency</category>
            <category>payments</category>
            <category>integrations</category>
            <category>ap2</category>
        </item>
        <item>
            <title><![CDATA["AI Agent Approval Queues Need Runtime Authority"]]></title>
            <link>https://runcycles.io/blog/ai-agent-approval-queues-need-runtime-authority</link>
            <guid isPermaLink="false">https://runcycles.io/blog/ai-agent-approval-queues-need-runtime-authority</guid>
            <pubDate>Mon, 11 May 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Human approval can pause risky agent actions, but it is not enforcement. Pair approval queues with runtime authority, scoped limits, and audit receipts."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["We Put Cycles in Front of Our Own Outreach Agent"]]></title>
            <link>https://runcycles.io/blog/we-put-cycles-in-front-of-our-own-outreach-agent</link>
            <guid isPermaLink="false">https://runcycles.io/blog/we-put-cycles-in-front-of-our-own-outreach-agent</guid>
            <pubDate>Sat, 09 May 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["A dogfood field report on governing a real autonomous outreach agent with Cycles — Gmail drafts, Slack review, budget caps, and DENY on external send."]]></description>
            <author>Evan Mavashev</author>
        </item>
        <item>
            <title><![CDATA["Supply-Chain Playbook for Agent Skill Markets"]]></title>
            <link>https://runcycles.io/blog/agent-skill-marketplace-supply-chain-playbook</link>
            <guid isPermaLink="false">https://runcycles.io/blog/agent-skill-marketplace-supply-chain-playbook</guid>
            <pubDate>Fri, 08 May 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["npm and PyPI took a decade to converge on signing, OIDC publishing, and provenance. Agent skill marketplaces can skip the detour — but also need runtime limits."]]></description>
            <author>Albert Mavashev</author>
            <category>security</category>
            <category>supply-chain</category>
            <category>marketplace</category>
            <category>governance</category>
            <category>agents</category>
            <category>runtime-authority</category>
            <category>action-control</category>
            <category>production</category>
        </item>
        <item>
            <title><![CDATA["Local-First Agent Runtimes Need Budget Authority"]]></title>
            <link>https://runcycles.io/blog/every-local-first-agent-runtime-needs-budget-authority</link>
            <guid isPermaLink="false">https://runcycles.io/blog/every-local-first-agent-runtime-needs-budget-authority</guid>
            <pubDate>Thu, 07 May 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Local-first, BYOK agent runtimes — OpenClaw, Cline, Aider, Continue — share a cost and action-risk governance gap that no provider cap or local limit closes."]]></description>
            <author>Albert Mavashev</author>
            <category>agents</category>
            <category>governance</category>
            <category>runtime-authority</category>
            <category>local-first</category>
            <category>byok</category>
            <category>budgets</category>
            <category>cost-control</category>
            <category>comparisons</category>
            <category>best-practices</category>
            <category>marketplace</category>
        </item>
        <item>
            <title><![CDATA["Policy Drift in AI Agents"]]></title>
            <link>https://runcycles.io/blog/policy-drift-in-ai-agents</link>
            <guid isPermaLink="false">https://runcycles.io/blog/policy-drift-in-ai-agents</guid>
            <pubDate>Thu, 07 May 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["AI agent policies drift when prompts, skills, tools, models, and workflows change. Static approval needs shadow mode, runtime limits, and audit loops."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["AI Agent Kill Switches Should Be Scoped"]]></title>
            <link>https://runcycles.io/blog/ai-agent-kill-switches-should-be-scoped</link>
            <guid isPermaLink="false">https://runcycles.io/blog/ai-agent-kill-switches-should-be-scoped</guid>
            <pubDate>Wed, 06 May 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Global AI agent kill switches are blunt incident tools. Scoped freezes, suspends, pauses, and budget limits contain damage without stopping everything."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["First Week with OpenClaw Budget Guard"]]></title>
            <link>https://runcycles.io/blog/openclaw-budget-guard-first-week-dry-run-to-production</link>
            <guid isPermaLink="false">https://runcycles.io/blog/openclaw-budget-guard-first-week-dry-run-to-production</guid>
            <pubDate>Wed, 06 May 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["An operator playbook for the first week after installing cycles-openclaw-budget-guard: simulated dry-run, calibration, then a canary cutover decision."]]></description>
            <author>Albert Mavashev</author>
            <category>openclaw</category>
            <category>budgets</category>
            <category>agents</category>
            <category>production</category>
            <category>operations</category>
            <category>dry-run</category>
            <category>cost-control</category>
            <category>best-practices</category>
        </item>
        <item>
            <title><![CDATA["Python AI Agent Control: Cost, Risk, and Audit"]]></title>
            <link>https://runcycles.io/blog/python-ai-agent-control-cost-risk-audit-layers</link>
            <guid isPermaLink="false">https://runcycles.io/blog/python-ai-agent-control-cost-risk-audit-layers</guid>
            <pubDate>Wed, 06 May 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Compare six Python AI agent control layers across cost, caller-assigned risk, and audit, including what each layer enforces and where it stops in production."]]></description>
            <author>Albert Mavashev</author>
            <category>agents</category>
            <category>governance</category>
            <category>runtime-authority</category>
            <category>action-control</category>
            <category>audit</category>
            <category>costs</category>
            <category>risk-assessment</category>
            <category>python</category>
            <category>production</category>
        </item>
        <item>
            <title><![CDATA["Agent Registries Are Not Runtime Governance"]]></title>
            <link>https://runcycles.io/blog/agent-registries-are-not-runtime-governance</link>
            <guid isPermaLink="false">https://runcycles.io/blog/agent-registries-are-not-runtime-governance</guid>
            <pubDate>Tue, 05 May 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Agent registries help inventory owners, lifecycle, and access, but runtime governance still needs per-action budget, risk, scope, and audit decisions."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["How scalerX Added Cycles to a Java Agent Runtime"]]></title>
            <link>https://runcycles.io/blog/how-scalerx-wired-cycles-into-a-java-agent-runtime</link>
            <guid isPermaLink="false">https://runcycles.io/blog/how-scalerx-wired-cycles-into-a-java-agent-runtime</guid>
            <pubDate>Tue, 05 May 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["See how scalerX.ai added scoped budget reservations to a Java Spring Boot agent runtime with @Cycles and reserve-commit around OpenAI calls in production."]]></description>
            <author>Cycles Team</author>
        </item>
        <item>
            <title><![CDATA["Add Hard Budgets to MCP Tools Before They Execute"]]></title>
            <link>https://runcycles.io/blog/mcp-tool-budgets-before-execution</link>
            <guid isPermaLink="false">https://runcycles.io/blog/mcp-tool-budgets-before-execution</guid>
            <pubDate>Tue, 05 May 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["MCP exposes tools, but it does not decide whether the next call should run. Wrap MCP handlers with Cycles reserve-commit checks before side effects happen."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["Agent Skills Are the New Supply Chain"]]></title>
            <link>https://runcycles.io/blog/agent-skills-are-the-new-supply-chain</link>
            <guid isPermaLink="false">https://runcycles.io/blog/agent-skills-are-the-new-supply-chain</guid>
            <pubDate>Mon, 04 May 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Agent skills turn reusable workflows into executable supply chain risk. Govern them with inventory, provenance, sandboxing, runtime limits, and audit."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["MCP Gateways Are Not Runtime Authority"]]></title>
            <link>https://runcycles.io/blog/mcp-gateways-are-not-runtime-authority</link>
            <guid isPermaLink="false">https://runcycles.io/blog/mcp-gateways-are-not-runtime-authority</guid>
            <pubDate>Sun, 03 May 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["MCP gateways help secure tool connectivity, but production agents still need runtime authority for budget, risk, scope, and per-action decisions at runtime."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["Agent Identity Is Not User Identity"]]></title>
            <link>https://runcycles.io/blog/agent-identity-is-not-user-identity</link>
            <guid isPermaLink="false">https://runcycles.io/blog/agent-identity-is-not-user-identity</guid>
            <pubDate>Sat, 02 May 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Why production AI agents need dedicated identities, scoped credentials, owner mapping, audit trails, and runtime authority instead of borrowed user sessions."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["Webhook Delivery That Operators Can Trust"]]></title>
            <link>https://runcycles.io/blog/webhook-delivery-operators-can-trust</link>
            <guid isPermaLink="false">https://runcycles.io/blog/webhook-delivery-operators-can-trust</guid>
            <pubDate>Fri, 01 May 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["A production webhook delivery contract for AI agent events: signed bodies, retries, dedupe keys, stale cutoffs, auto-disable, replay, and traceability."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["Bulk Operations for Incident Response"]]></title>
            <link>https://runcycles.io/blog/bulk-operations-ai-agent-incident-response</link>
            <guid isPermaLink="false">https://runcycles.io/blog/bulk-operations-ai-agent-incident-response</guid>
            <pubDate>Thu, 30 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Why AI agent platforms need previewed, idempotent bulk actions to contain tenant, webhook, and budget incidents without blind production scripts at 2 AM."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["Least-Privilege API Keys for AI Agents"]]></title>
            <link>https://runcycles.io/blog/least-privilege-api-keys-for-ai-agents</link>
            <guid isPermaLink="false">https://runcycles.io/blog/least-privilege-api-keys-for-ai-agents</guid>
            <pubDate>Wed, 29 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["How to scope AI agent API keys by tenant, environment, and permission so one leaked credential cannot become cross-tenant budget authority in production."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["Cursor Agent Deleted a Prod Database in 9 Seconds"]]></title>
            <link>https://runcycles.io/blog/ai-agent-deleted-prod-database-9-seconds</link>
            <guid isPermaLink="false">https://runcycles.io/blog/ai-agent-deleted-prod-database-9-seconds</guid>
            <pubDate>Tue, 28 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Cursor agent reportedly wiped a Railway production database and backups in one API call. Prompts aren't permissions — agents need pre-execution gates."]]></description>
            <author>Albert Mavashev</author>
            <category>incidents</category>
            <category>runtime-authority</category>
            <category>governance</category>
            <category>audit</category>
            <category>action-authority</category>
            <category>agents</category>
        </item>
        <item>
            <title><![CDATA["The AI Agent Audit Trail You're Already Building"]]></title>
            <link>https://runcycles.io/blog/runtime-authority-byproducts-audit-trail-and-attribution-by-default</link>
            <guid isPermaLink="false">https://runcycles.io/blog/runtime-authority-byproducts-audit-trail-and-attribution-by-default</guid>
            <pubDate>Mon, 27 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Runtime authority's hidden byproduct: ledger-ready audit, cost, and attribution records for AI agents — useful for compliance, FinOps, and platform chargeback."]]></description>
            <author>Cycles Team</author>
            <category>runtime-authority</category>
            <category>governance</category>
            <category>audit</category>
            <category>finops</category>
            <category>compliance</category>
            <category>costs</category>
            <category>agents</category>
            <category>engineering</category>
        </item>
        <item>
            <title><![CDATA["Why Multi-Agent Coordination Fails"]]></title>
            <link>https://runcycles.io/blog/multi-agent-coordination-failure-structural-prevention</link>
            <guid isPermaLink="false">https://runcycles.io/blog/multi-agent-coordination-failure-structural-prevention</guid>
            <pubDate>Sun, 26 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Multi-agent failures aren't a prompt problem. They're structural. A look at the UC Berkeley MAST taxonomy and the prevention patterns that actually work."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["Deploying the Cycles Events Service at Scale"]]></title>
            <link>https://runcycles.io/blog/deploying-cycles-events-service-at-scale</link>
            <guid isPermaLink="false">https://runcycles.io/blog/deploying-cycles-events-service-at-scale</guid>
            <pubDate>Sat, 25 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Run the Cycles events service with correct ports, Prometheus metrics, Kubernetes probes, and alert rules that give production teams actionable signals."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["Webhook Idempotency for Agent Budget Events"]]></title>
            <link>https://runcycles.io/blog/webhook-idempotency-patterns-for-ai-agent-budget-events</link>
            <guid isPermaLink="false">https://runcycles.io/blog/webhook-idempotency-patterns-for-ai-agent-budget-events</guid>
            <pubDate>Fri, 24 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["How to design idempotent webhook receivers for Cycles budget events: X-Cycles-Event-Id dedup, HMAC verification, Redis vs Postgres patterns, and replay testing."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["Shadow Mode to Hard Enforcement"]]></title>
            <link>https://runcycles.io/blog/shadow-to-enforcement-cutover-decision-tree</link>
            <guid isPermaLink="false">https://runcycles.io/blog/shadow-to-enforcement-cutover-decision-tree</guid>
            <pubDate>Thu, 23 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["When is an AI agent budget policy actually ready for hard enforcement? A signal-driven decision tree — not a calendar — for flipping from dry-run to blocking."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["Tenant Lifecycle at Scale: Cascade Semantics"]]></title>
            <link>https://runcycles.io/blog/tenant-lifecycle-cascade-semantics-at-scale</link>
            <guid isPermaLink="false">https://runcycles.io/blog/tenant-lifecycle-cascade-semantics-at-scale</guid>
            <pubDate>Thu, 23 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Closing an AI-agent tenant requires explicit cascade semantics. Learn terminal-owner guards, dependent resource cleanup, and zombie-budget prevention."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["W3C Trace Context for AI Agent Debugging"]]></title>
            <link>https://runcycles.io/blog/w3c-trace-context-ai-agent-debugging</link>
            <guid isPermaLink="false">https://runcycles.io/blog/w3c-trace-context-ai-agent-debugging</guid>
            <pubDate>Thu, 23 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Trace AI agent budget decisions across Cycles admin, runtime, event, and audit records with W3C Trace Context, reservation IDs, and application propagation."]]></description>
            <author>Albert Mavashev</author>
        </item>
        <item>
            <title><![CDATA["Budgeting Reasoning Tokens Before They Bill"]]></title>
            <link>https://runcycles.io/blog/budgeting-reasoning-tokens-governing-extended-thinking-before-it-bills</link>
            <guid isPermaLink="false">https://runcycles.io/blog/budgeting-reasoning-tokens-governing-extended-thinking-before-it-bills</guid>
            <pubDate>Wed, 22 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Reserve worst-case reasoning tokens before model calls, enforce provider limits in your app, and settle actual thinking plus output usage after execution."]]></description>
            <author>Albert Mavashev</author>
            <category>governance</category>
            <category>budgets</category>
            <category>production</category>
            <category>costs</category>
            <category>risk</category>
        </item>
        <item>
            <title><![CDATA["Track Tokens in Streaming LLM Responses"]]></title>
            <link>https://runcycles.io/blog/tracking-tokens-in-a-streaming-llm-response</link>
            <guid isPermaLink="false">https://runcycles.io/blog/tracking-tokens-in-a-streaming-llm-response</guid>
            <pubDate>Sun, 19 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Streaming LLM cost tracking breaks reserve-commit in four ways. A Python context manager for OpenAI + Anthropic budget enforcement that handles all four."]]></description>
            <author>Albert Mavashev</author>
            <category>engineering</category>
            <category>streaming</category>
            <category>llm</category>
            <category>budget-enforcement</category>
            <category>python</category>
            <category>openai</category>
        </item>
        <item>
            <title><![CDATA["How We Stopped Shipping Performance Regressions"]]></title>
            <link>https://runcycles.io/blog/how-we-stopped-shipping-performance-regressions</link>
            <guid isPermaLink="false">https://runcycles.io/blog/how-we-stopped-shipping-performance-regressions</guid>
            <pubDate>Sat, 18 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["How Cycles gates releases with rolling benchmark medians, separates blocking and warning thresholds, and reduces noise from variable GitHub Actions runners."]]></description>
            <author>Albert Mavashev</author>
            <category>engineering</category>
            <category>operations</category>
            <category>performance</category>
            <category>ci</category>
            <category>benchmarking</category>
            <category>regression-testing</category>
        </item>
        <item>
            <title><![CDATA["Designing a Redis TTL Sweeper That Doesn't Lie"]]></title>
            <link>https://runcycles.io/blog/designing-a-redis-ttl-sweeper-that-doesnt-lie</link>
            <guid isPermaLink="false">https://runcycles.io/blog/designing-a-redis-ttl-sweeper-that-doesnt-lie</guid>
            <pubDate>Fri, 17 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["A Redis TTL sweeper must avoid duplicate action, missed candidates, and clock-skew errors. Learn seven correctness properties and two production bugs."]]></description>
            <author>Albert Mavashev</author>
            <category>engineering</category>
            <category>architecture</category>
            <category>operations</category>
            <category>redis</category>
            <category>lua</category>
            <category>background-jobs</category>
            <category>ttl</category>
        </item>
        <item>
            <title><![CDATA["Debugging AI Agent Spend in Production"]]></title>
            <link>https://runcycles.io/blog/where-did-my-tokens-go-debugging-agent-spend</link>
            <guid isPermaLink="false">https://runcycles.io/blog/where-did-my-tokens-go-debugging-agent-spend</guid>
            <pubDate>Fri, 17 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Debug AI agent spend with scope paths, event streams, and trace IDs, then trace unexpected cost increases across tenants, workflows, and providers reliably."]]></description>
            <author>Albert Mavashev</author>
            <category>engineering</category>
            <category>debugging</category>
            <category>observability</category>
            <category>agents</category>
            <category>cost-attribution</category>
            <category>runtime-authority</category>
        </item>
        <item>
            <title><![CDATA["Property Tests for Cycles Budget Authority"]]></title>
            <link>https://runcycles.io/blog/why-we-added-property-tests-to-cycles-budget-authority</link>
            <guid isPermaLink="false">https://runcycles.io/blog/why-we-added-property-tests-to-cycles-budget-authority</guid>
            <pubDate>Thu, 16 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Learn how property-based tests expose concurrency and atomicity failures in Cycles budget authority, including practical jqwik and Spring testing traps."]]></description>
            <author>Albert Mavashev</author>
            <category>engineering</category>
            <category>testing</category>
            <category>operations</category>
            <category>property-based-testing</category>
            <category>jqwik</category>
            <category>concurrency</category>
            <category>runtime-authority</category>
        </item>
        <item>
            <title><![CDATA["Why Cycles Runs Budget Authority on Redis Lua"]]></title>
            <link>https://runcycles.io/blog/why-cycles-runs-budget-authority-on-redis-lua</link>
            <guid isPermaLink="false">https://runcycles.io/blog/why-cycles-runs-budget-authority-on-redis-lua</guid>
            <pubDate>Wed, 15 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Learn why Cycles uses Redis and Lua for atomic budget authority, low-latency decisions, retry safety, and correctness under concurrent agent traffic at scale."]]></description>
            <author>Albert Mavashev</author>
            <category>engineering</category>
            <category>architecture</category>
            <category>operations</category>
            <category>redis</category>
            <category>lua</category>
            <category>concurrency</category>
            <category>runtime-authority</category>
        </item>
        <item>
            <title><![CDATA["Agents Are Cross-Cutting. Your Controls Aren't."]]></title>
            <link>https://runcycles.io/blog/agents-are-cross-cutting-your-controls-arent</link>
            <guid isPermaLink="false">https://runcycles.io/blog/agents-are-cross-cutting-your-controls-arent</guid>
            <pubDate>Sat, 11 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Agents span providers, tools, tenants, and workers. Learn why governance needs cross-cutting budget authority plus application-side authorization at runtime."]]></description>
            <author>Albert Mavashev</author>
            <category>runtime-authority</category>
            <category>governance</category>
            <category>architecture</category>
            <category>comparisons</category>
            <category>multi-tenant</category>
            <category>multi-agent</category>
            <category>observability</category>
        </item>
        <item>
            <title><![CDATA["HTTP 429: Why Retry Logic Lies"]]></title>
            <link>https://runcycles.io/blog/429-classification-gap-why-retry-logic-lying</link>
            <guid isPermaLink="false">https://runcycles.io/blog/429-classification-gap-why-retry-logic-lying</guid>
            <pubDate>Fri, 10 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["HTTP 429 can mean wait, cap, or stop. Learn how classifying each response before retrying prevents retry storms and unsafe AI agent behavior in production."]]></description>
            <author>Brenton Williams</author>
            <category>agents</category>
            <category>retry-logic</category>
            <category>retry-storms</category>
            <category>rate-limits</category>
            <category>http-429</category>
            <category>429</category>
            <category>agent-infrastructure</category>
            <category>runtime-authority</category>
        </item>
        <item>
            <title><![CDATA["AI Agent Governance Dashboard: Budgets, Risk, Keys"]]></title>
            <link>https://runcycles.io/blog/ai-agent-governance-admin-dashboard-monitor-control-budgets-risk</link>
            <guid isPermaLink="false">https://runcycles.io/blog/ai-agent-governance-admin-dashboard-monitor-control-budgets-risk</guid>
            <pubDate>Thu, 09 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Learn how operators monitor AI agent budgets, risk limits, and API keys during incidents, with practical workflows for diagnosing and containing failures."]]></description>
            <author>Albert Mavashev</author>
            <category>product</category>
            <category>operations</category>
            <category>dashboard</category>
            <category>runtime-authority</category>
        </item>
        <item>
            <title><![CDATA["Retry Storms & Idempotency in Agent Budget Systems"]]></title>
            <link>https://runcycles.io/blog/retry-storms-and-idempotency-in-agent-budget-systems</link>
            <guid isPermaLink="false">https://runcycles.io/blog/retry-storms-and-idempotency-in-agent-budget-systems</guid>
            <pubDate>Wed, 08 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["AI agent retries amplify cost and side effects. Learn how stable idempotency keys prevent duplicate actions and duplicate budget charges under failure."]]></description>
            <author>Albert Mavashev</author>
            <category>engineering</category>
            <category>production</category>
            <category>operations</category>
            <category>best-practices</category>
            <category>runtime-authority</category>
            <category>architecture</category>
        </item>
        <item>
            <title><![CDATA["State of AI Agent Governance 2026"]]></title>
            <link>https://runcycles.io/blog/state-of-ai-agent-governance-2026</link>
            <guid isPermaLink="false">https://runcycles.io/blog/state-of-ai-agent-governance-2026</guid>
            <pubDate>Wed, 08 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["AI agents moved to production faster than governance kept up. This is the state of enforcement, regulation, and incidents in 2026 — and what comes next."]]></description>
            <author>Albert Mavashev</author>
            <category>governance</category>
            <category>production</category>
            <category>operations</category>
            <category>runtime-authority</category>
            <category>agents</category>
            <category>security</category>
            <category>best-practices</category>
            <category>compliance</category>
            <category>regulation</category>
            <category>incidents</category>
        </item>
        <item>
            <title><![CDATA["Estimate Drift in Budget Enforcement"]]></title>
            <link>https://runcycles.io/blog/estimate-drift-silent-killer-of-enforcement</link>
            <guid isPermaLink="false">https://runcycles.io/blog/estimate-drift-silent-killer-of-enforcement</guid>
            <pubDate>Tue, 07 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Detect AI agent estimate drift by comparing reservations with actual usage, segmenting changes by workload, and recalibrating without masking budget intent."]]></description>
            <author>Albert Mavashev</author>
            <category>operations</category>
            <category>production</category>
            <category>observability</category>
            <category>runtime-authority</category>
            <category>incident-response</category>
            <category>calibration</category>
        </item>
        <item>
            <title><![CDATA["Operational Runbook: Using Cycles Runtime Events"]]></title>
            <link>https://runcycles.io/blog/operational-runbook-using-cycles-runtime-events</link>
            <guid isPermaLink="false">https://runcycles.io/blog/operational-runbook-using-cycles-runtime-events</guid>
            <pubDate>Tue, 07 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Wire Cycles runtime events into on-call workflows with severity tiers, diagnostic trees, and remediation patterns designed for AI agent budget incidents."]]></description>
            <author>Albert Mavashev</author>
            <category>engineering</category>
            <category>operations</category>
            <category>production</category>
            <category>incident-response</category>
            <category>webhooks</category>
            <category>observability</category>
            <category>runtime-authority</category>
        </item>
        <item>
            <title><![CDATA["AI Agent Cost Control in 2026: A Landscape Guide"]]></title>
            <link>https://runcycles.io/blog/ai-agent-cost-control-2026-litellm-helicone-openrouter-runtime-authority</link>
            <guid isPermaLink="false">https://runcycles.io/blog/ai-agent-cost-control-2026-litellm-helicone-openrouter-runtime-authority</guid>
            <pubDate>Mon, 06 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Compare LiteLLM, Helicone, OpenRouter, and Cycles for AI agent cost control: routing, observability, provider caps, and pre-execution budgets at runtime."]]></description>
            <author>Albert Mavashev</author>
            <category>engineering</category>
            <category>production</category>
            <category>costs</category>
            <category>agents</category>
            <category>best-practices</category>
            <category>governance</category>
            <category>architecture</category>
        </item>
        <item>
            <title><![CDATA["Add Runtime Enforcement Without Breaking Agents"]]></title>
            <link>https://runcycles.io/blog/how-to-add-runtime-enforcement-without-breaking-your-agents</link>
            <guid isPermaLink="false">https://runcycles.io/blog/how-to-add-runtime-enforcement-without-breaking-your-agents</guid>
            <pubDate>Mon, 06 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Use shadow mode to introduce runtime enforcement, calibrate policy against real traffic, and cut over safely without disrupting production AI agents reliably."]]></description>
            <author>Albert Mavashev</author>
            <category>engineering</category>
            <category>production</category>
            <category>best-practices</category>
            <category>agents</category>
            <category>runtime-authority</category>
            <category>architecture</category>
            <category>shadow-mode</category>
        </item>
        <item>
            <title><![CDATA["When Budget Runs Out: AI Agent Degradation Patterns"]]></title>
            <link>https://runcycles.io/blog/when-budget-runs-out-graceful-degradation-patterns-for-ai-agents</link>
            <guid isPermaLink="false">https://runcycles.io/blog/when-budget-runs-out-graceful-degradation-patterns-for-ai-agents</guid>
            <pubDate>Mon, 06 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Handle rejected reservations and configured caps with five AI agent degradation patterns, from model fallback and read-only work to a graceful stop safely."]]></description>
            <author>Albert Mavashev</author>
            <category>engineering</category>
            <category>best-practices</category>
            <category>agents</category>
            <category>production</category>
            <category>action-control</category>
            <category>costs</category>
            <category>risk</category>
            <category>budgets</category>
        </item>
        <item>
            <title><![CDATA["Where AI Agent Controls Break"]]></title>
            <link>https://runcycles.io/blog/how-teams-control-ai-agents-today-and-where-it-breaks</link>
            <guid isPermaLink="false">https://runcycles.io/blog/how-teams-control-ai-agents-today-and-where-it-breaks</guid>
            <pubDate>Sun, 05 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["System prompts, rate limits, and dashboards each help control agents but fail at different boundaries. See where runtime budget authority fits in production."]]></description>
            <author>Albert Mavashev</author>
            <category>engineering</category>
            <category>risk</category>
            <category>governance</category>
            <category>agents</category>
            <category>best-practices</category>
            <category>production</category>
            <category>costs</category>
            <category>security</category>
            <category>multi-agent</category>
            <category>action-control</category>
        </item>
        <item>
            <title><![CDATA["Why We Stopped Using an Agent Rate Limiter"]]></title>
            <link>https://runcycles.io/blog/we-built-a-custom-agent-rate-limiter-heres-why-we-stopped</link>
            <guid isPermaLink="false">https://runcycles.io/blog/we-built-a-custom-agent-rate-limiter-heres-why-we-stopped</guid>
            <pubDate>Sun, 05 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["A post-mortem of the multi-provider AI agent rate limiter we built at scalerX — three versions, three walls, and why runtime authority is the real problem."]]></description>
            <author>Albert Mavashev</author>
            <category>engineering</category>
            <category>production</category>
            <category>costs</category>
            <category>agents</category>
            <category>best-practices</category>
            <category>budgets</category>
            <category>runtime-authority</category>
            <category>architecture</category>
        </item>
        <item>
            <title><![CDATA["Agent Delegation Needs Authority Attenuation"]]></title>
            <link>https://runcycles.io/blog/agent-delegation-chains-authority-attenuation-not-trust-propagation</link>
            <guid isPermaLink="false">https://runcycles.io/blog/agent-delegation-chains-authority-attenuation-not-trust-propagation</guid>
            <pubDate>Sat, 04 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Multi-agent delegation chains propagate full trust by default. Every hop should narrow budget, actions, and scope. Here's the authority attenuation pattern."]]></description>
            <author>Albert Mavashev</author>
            <category>delegation</category>
            <category>multi-agent</category>
            <category>governance</category>
            <category>runtime-authority</category>
            <category>zero-trust</category>
            <category>security</category>
            <category>architecture</category>
        </item>
        <item>
            <title><![CDATA["Cycles Budget Enforcement Benchmarks"]]></title>
            <link>https://runcycles.io/blog/cycles-server-performance-benchmarks</link>
            <guid isPermaLink="false">https://runcycles.io/blog/cycles-server-performance-benchmarks</guid>
            <pubDate>Sat, 04 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Review published Cycles budget-enforcement benchmarks across operations, including latency, throughput, concurrency, and the methodology behind each result."]]></description>
            <author>Cycles Team</author>
            <category>engineering</category>
            <category>performance</category>
            <category>benchmarks</category>
            <category>scaling</category>
            <category>latency</category>
            <category>throughput</category>
            <category>redis</category>
        </item>
        <item>
            <title><![CDATA["Why I'm Building Cycles"]]></title>
            <link>https://runcycles.io/blog/why-i-am-building-cycles</link>
            <guid isPermaLink="false">https://runcycles.io/blog/why-i-am-building-cycles</guid>
            <pubDate>Sat, 04 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["After decades building middleware governance, Albert Mavashev saw the same control gap emerge in AI agents. This is why he is building Cycles for production."]]></description>
            <author>Albert Mavashev</author>
            <category>founder</category>
            <category>vision</category>
            <category>agents</category>
            <category>governance</category>
        </item>
        <item>
            <title><![CDATA["AI Agent Risk Assessment: Score, Classify, Enforce"]]></title>
            <link>https://runcycles.io/blog/ai-agent-risk-assessment-score-classify-enforce-tool-risk</link>
            <guid isPermaLink="false">https://runcycles.io/blog/ai-agent-risk-assessment-score-classify-enforce-tool-risk</guid>
            <pubDate>Fri, 03 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Classify AI agent actions by blast radius, assign consistent risk scores, and translate each assessment into enforceable runtime budget controls in practice."]]></description>
            <author>Albert Mavashev</author>
            <category>risk-assessment</category>
            <category>risk-scoring</category>
            <category>action-control</category>
            <category>RISK_POINTS</category>
            <category>agents</category>
            <category>production</category>
            <category>governance</category>
        </item>
        <item>
            <title><![CDATA["The State of AI Agent Incidents (2026)"]]></title>
            <link>https://runcycles.io/blog/state-of-ai-agent-incidents-2026</link>
            <guid isPermaLink="false">https://runcycles.io/blog/state-of-ai-agent-incidents-2026</guid>
            <pubDate>Fri, 03 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Documented AI agent incidents and failure patterns — runaway costs, action misfires, security exploits, multi-agent cascades — scored by cost and blast radius."]]></description>
            <author>Albert Mavashev</author>
            <category>incidents</category>
            <category>governance</category>
            <category>security</category>
            <category>costs</category>
            <category>agents</category>
            <category>production</category>
            <category>MCP</category>
            <category>OWASP</category>
            <category>multi-agent</category>
        </item>
        <item>
            <title><![CDATA["26 Integrations for One AI Budget Protocol"]]></title>
            <link>https://runcycles.io/blog/26-integrations-every-ai-framework-one-budget-protocol</link>
            <guid isPermaLink="false">https://runcycles.io/blog/26-integrations-every-ai-framework-one-budget-protocol</guid>
            <pubDate>Thu, 02 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["At launch, Cycles documented 26 integrations across Python, TypeScript, Java, and Rust. See how one protocol coordinates runtime budget controls across stacks."]]></description>
            <author>Albert Mavashev</author>
            <category>announcement</category>
            <category>integrations</category>
            <category>langchain</category>
            <category>langgraph</category>
            <category>autogen</category>
            <category>openai</category>
            <category>anthropic</category>
            <category>groq</category>
            <category>django</category>
            <category>nextjs</category>
            <category>flask</category>
            <category>anyagent</category>
            <category>runtime-authority</category>
        </item>
        <item>
            <title><![CDATA["AI Agents: EU AI Act, NIST, ISO 42001, OWASP Map"]]></title>
            <link>https://runcycles.io/blog/ai-agent-governance-framework-nist-eu-ai-act-iso-42001-owasp-runtime-enforcement</link>
            <guid isPermaLink="false">https://runcycles.io/blog/ai-agent-governance-framework-nist-eu-ai-act-iso-42001-owasp-runtime-enforcement</guid>
            <pubDate>Thu, 02 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Map EU AI Act, NIST AI RMF, ISO 42001, and OWASP regulatory requirements to runtime enforcement controls — a practical governance framework for AI agents."]]></description>
            <author>Cycles Team</author>
            <category>governance</category>
            <category>compliance</category>
            <category>EU AI Act</category>
            <category>NIST</category>
            <category>ISO 42001</category>
            <category>OWASP</category>
            <category>runtime-authority</category>
            <category>agents</category>
        </item>
        <item>
            <title><![CDATA["How Cycles Meters Caller-Assigned Action Exposure"]]></title>
            <link>https://runcycles.io/blog/beyond-budget-how-cycles-controls-agent-actions</link>
            <guid isPermaLink="false">https://runcycles.io/blog/beyond-budget-how-cycles-controls-agent-actions</guid>
            <pubDate>Thu, 02 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Learn how Cycles meters caller-assigned risk budgets while application authorization controls which agent tools and arguments may execute at runtime boundaries."]]></description>
            <author>Albert Mavashev</author>
            <category>action-authority</category>
            <category>RISK_POINTS</category>
            <category>runtime-authority</category>
            <category>tool-governance</category>
            <category>agents</category>
        </item>
        <item>
            <title><![CDATA["Operating Cycles Budget Enforcement"]]></title>
            <link>https://runcycles.io/blog/operating-budget-enforcement-in-production</link>
            <guid isPermaLink="false">https://runcycles.io/blog/operating-budget-enforcement-in-production</guid>
            <pubDate>Wed, 01 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Respond to reservation denials with diagnostic decision trees, emergency playbooks, and leading metrics for operating Cycles budget controls in production."]]></description>
            <author>Albert Mavashev</author>
            <category>operations</category>
            <category>incident-response</category>
            <category>production</category>
            <category>observability</category>
        </item>
        <item>
            <title><![CDATA["Real-Time Budget Alerts for AI Agents"]]></title>
            <link>https://runcycles.io/blog/real-time-budget-alerts-for-ai-agents</link>
            <guid isPermaLink="false">https://runcycles.io/blog/real-time-budget-alerts-for-ai-agents</guid>
            <pubDate>Wed, 01 Apr 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Design real-time AI agent budget alerts with webhooks, delivery guarantees, retry handling, and integrations for PagerDuty, Slack, and internal systems."]]></description>
            <author>Albert Mavashev</author>
            <category>engineering</category>
            <category>webhooks</category>
            <category>architecture</category>
            <category>observability</category>
        </item>
        <item>
            <title><![CDATA["Budget and Action Guardrails for Rust AI Agents"]]></title>
            <link>https://runcycles.io/blog/how-to-add-budget-and-action-guardrails-to-rust-ai-agents-with-cycles</link>
            <guid isPermaLink="false">https://runcycles.io/blog/how-to-add-budget-and-action-guardrails-to-rust-ai-agents-with-cycles</guid>
            <pubDate>Tue, 31 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Add pre-execution budget controls to Rust AI agents, apply configured caps, settle partial failures safely, and preserve lifecycle evidence across retries."]]></description>
            <author>Albert Mavashev</author>
            <category>rust</category>
            <category>agents</category>
            <category>engineering</category>
            <category>costs</category>
            <category>governance</category>
            <category>audit</category>
            <category>guide</category>
        </item>
        <item>
            <title><![CDATA["5 Action-Risk Scenarios and Control Patterns"]]></title>
            <link>https://runcycles.io/blog/ai-agent-action-failures-runtime-authority-prevents</link>
            <guid isPermaLink="false">https://runcycles.io/blog/ai-agent-action-failures-runtime-authority-prevents</guid>
            <pubDate>Mon, 30 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Five illustrative low-token, high-impact agent action scenarios, with application authorization and caller-assigned RISK_POINTS patterns to contain each one."]]></description>
            <author>Cycles Team</author>
            <category>action-control</category>
            <category>risk</category>
            <category>incidents</category>
            <category>best-practices</category>
        </item>
        <item>
            <title><![CDATA["OpenAI Agents SDK Guardrails vs Action Control"]]></title>
            <link>https://runcycles.io/blog/openai-agents-sdk-has-guardrails-for-content-but-nothing-for-actions</link>
            <guid isPermaLink="false">https://runcycles.io/blog/openai-agents-sdk-has-guardrails-for-content-but-nothing-for-actions</guid>
            <pubDate>Mon, 30 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["OpenAI Agents SDK tool guardrails validate individual function tools. They aren't cross-tenant budget or risk authority — RunHooks is where that fits."]]></description>
            <author>Albert Mavashev</author>
            <category>openai</category>
            <category>agents</category>
            <category>runtime-authority</category>
            <category>governance</category>
            <category>risk</category>
            <category>action-control</category>
            <category>python</category>
            <category>RunHooks</category>
        </item>
        <item>
            <title><![CDATA["Why AI Agent Tests Pass but Production Fails"]]></title>
            <link>https://runcycles.io/blog/why-ai-agent-tests-pass-but-production-keeps-failing</link>
            <guid isPermaLink="false">https://runcycles.io/blog/why-ai-agent-tests-pass-but-production-keeps-failing</guid>
            <pubDate>Mon, 30 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["AI agent tests and evals cannot reproduce every production condition. Learn which runtime controls close the gap between test success and live failures."]]></description>
            <author>Cycles Team</author>
            <category>agents</category>
            <category>testing</category>
            <category>evaluation</category>
            <category>production</category>
            <category>reliability</category>
            <category>CI-CD</category>
            <category>engineering</category>
        </item>
        <item>
            <title><![CDATA["MAST: Multi-Agent Failure Rates Reached 86.7%"]]></title>
            <link>https://runcycles.io/blog/why-multi-agent-systems-fail-87-percent-cost-of-every-coordination-breakdown</link>
            <guid isPermaLink="false">https://runcycles.io/blog/why-multi-agent-systems-fail-87-percent-cost-of-every-coordination-breakdown</guid>
            <pubDate>Sun, 29 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["MAST analyzed 1,600+ traces across seven multi-agent frameworks and identified 14 failure modes. Model how scoped budgets can contain failure costs safely."]]></description>
            <author>Cycles Team</author>
            <category>multi-agent</category>
            <category>failures</category>
            <category>costs</category>
            <category>coordination</category>
            <category>production</category>
            <category>MAST</category>
            <category>runtime-authority</category>
            <category>engineering</category>
        </item>
        <item>
            <title><![CDATA["We Gave Our OpenClaw Agent a $5 Budget"]]></title>
            <link>https://runcycles.io/blog/openclaw-budget-guard-five-dollar-agent</link>
            <guid isPermaLink="false">https://runcycles.io/blog/openclaw-budget-guard-five-dollar-agent</guid>
            <pubDate>Sat, 28 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["A constructed OpenClaw walkthrough showing how a $5 Cycles budget can downgrade models, disable expensive tools, and stop new work safely before the cap."]]></description>
            <author>Albert Mavashev</author>
            <category>openclaw</category>
            <category>budgets</category>
            <category>agents</category>
            <category>graceful-degradation</category>
            <category>model-downgrade</category>
            <category>production</category>
            <category>cost-control</category>
            <category>ai-agent-cost</category>
            <category>llm-cost-management</category>
        </item>
        <item>
            <title><![CDATA["Five Lessons from a Production OpenClaw Plugin"]]></title>
            <link>https://runcycles.io/blog/openclaw-plugin-lessons-learned</link>
            <guid isPermaLink="false">https://runcycles.io/blog/openclaw-plugin-lessons-learned</guid>
            <pubDate>Sat, 28 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Five implementation lessons from building an OpenClaw budget plugin: model-call blocking limits, hook metadata gaps, config traps, and safe workarounds."]]></description>
            <author>Albert Mavashev</author>
            <category>openclaw</category>
            <category>plugins</category>
            <category>engineering</category>
            <category>hooks</category>
            <category>workarounds</category>
            <category>developer-experience</category>
            <category>production</category>
            <category>openclaw-plugin-development</category>
        </item>
        <item>
            <title><![CDATA["Salesforce, ServiceNow, and the Cross-Platform Gap"]]></title>
            <link>https://runcycles.io/blog/cross-platform-ai-agent-governance-salesforce-servicenow</link>
            <guid isPermaLink="false">https://runcycles.io/blog/cross-platform-ai-agent-governance-salesforce-servicenow</guid>
            <pubDate>Fri, 27 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Salesforce and ServiceNow have invested in AI agent governance. Neither acts as a neutral, shared pre-execution control plane across both — and custom runtimes."]]></description>
            <author>Albert Mavashev</author>
            <category>governance</category>
            <category>enterprise</category>
            <category>salesforce</category>
            <category>servicenow</category>
            <category>agentforce</category>
            <category>cross-platform</category>
            <category>action-authority</category>
        </item>
        <item>
            <title><![CDATA["MCP-ITP: Target-Tool Calls Reached 84.2%"]]></title>
            <link>https://runcycles.io/blog/mcp-tool-poisoning-why-agent-frameworks-cant-prevent-it</link>
            <guid isPermaLink="false">https://runcycles.io/blog/mcp-tool-poisoning-why-agent-frameworks-cant-prevent-it</guid>
            <pubDate>Fri, 27 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["MCP-ITP induced selected target-tool calls in up to 84.2% of MCPTox prompts. Learn what the benchmark measured and how to layer MCP defenses in production."]]></description>
            <author>Albert Mavashev</author>
            <category>security</category>
            <category>MCP</category>
            <category>tool-poisoning</category>
            <category>agents</category>
            <category>production</category>
            <category>OWASP</category>
            <category>runtime-authority</category>
            <category>supply-chain</category>
        </item>
        <item>
            <title><![CDATA["Your OpenClaw Agent Has No Spending Limit"]]></title>
            <link>https://runcycles.io/blog/openclaw-budget-guard-stop-agents-burning-money</link>
            <guid isPermaLink="false">https://runcycles.io/blog/openclaw-budget-guard-stop-agents-burning-money</guid>
            <pubDate>Fri, 27 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["OpenClaw agents can retry model and tool calls without a budget cap. Learn how its Cycles budget guard adds pre-execution limits without app code changes."]]></description>
            <author>Albert Mavashev</author>
            <category>openclaw</category>
            <category>budgets</category>
            <category>agents</category>
            <category>runtime-authority</category>
            <category>cost-control</category>
            <category>plugins</category>
            <category>tool-limits</category>
        </item>
        <item>
            <title><![CDATA["AI Agent Silent Failures in Production"]]></title>
            <link>https://runcycles.io/blog/ai-agent-silent-failures-why-200-ok-is-the-most-dangerous-response</link>
            <guid isPermaLink="false">https://runcycles.io/blog/ai-agent-silent-failures-why-200-ok-is-the-most-dangerous-response</guid>
            <pubDate>Thu, 26 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["AI agents can return success while producing damaging results. Learn why silent failures happen and which runtime controls expose them before impact spreads."]]></description>
            <author>Cycles Team</author>
            <category>agents</category>
            <category>production</category>
            <category>reliability</category>
            <category>observability</category>
            <category>silent-failures</category>
            <category>multi-agent</category>
        </item>
        <item>
            <title><![CDATA["Stop a Runaway AI Agent in Three Lines"]]></title>
            <link>https://runcycles.io/blog/runaway-demo-agent-cost-blowup-walkthrough</link>
            <guid isPermaLink="false">https://runcycles.io/blog/runaway-demo-agent-cost-blowup-walkthrough</guid>
            <pubDate>Thu, 26 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["A support agent with a quality-loop bug burns through budget in seconds. See how Cycles stops the run at a fixed limit with a small integration wrapper."]]></description>
            <author>Albert Mavashev</author>
            <category>runaway-agents</category>
            <category>demo</category>
            <category>agents</category>
            <category>runtime-authority</category>
            <category>walkthrough</category>
            <category>budget-enforcement</category>
            <category>cost-control</category>
        </item>
        <item>
            <title><![CDATA["AI Agent Runtime Enforcement: Security and Cost"]]></title>
            <link>https://runcycles.io/blog/ai-agent-governance-runtime-enforcement-security-cost-compliance</link>
            <guid isPermaLink="false">https://runcycles.io/blog/ai-agent-governance-runtime-enforcement-security-cost-compliance</guid>
            <pubDate>Wed, 25 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Most AI agent deployments lack runtime governance. Pre-execution enforcement — not dashboards — is the missing layer for agent security, cost, and compliance."]]></description>
            <author>Cycles Team</author>
            <category>governance</category>
            <category>security</category>
            <category>compliance</category>
            <category>agents</category>
            <category>production</category>
            <category>MCP</category>
            <category>multi-agent</category>
        </item>
        <item>
            <title><![CDATA["The AI Agent Production Gap"]]></title>
            <link>https://runcycles.io/blog/ai-agent-production-gap-what-developers-are-saying</link>
            <guid isPermaLink="false">https://runcycles.io/blog/ai-agent-production-gap-what-developers-are-saying</guid>
            <pubDate>Wed, 25 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["What developer reports reveal about AI agent costs, error cascades, MCP security, and the need for mandatory pre-execution budget controls in production."]]></description>
            <author>Cycles Team</author>
            <category>agents</category>
            <category>costs</category>
            <category>production</category>
            <category>community</category>
            <category>observability</category>
            <category>multi-agent</category>
            <category>MCP</category>
        </item>
        <item>
            <title><![CDATA["Zero Trust for AI Agents at the Tool Boundary"]]></title>
            <link>https://runcycles.io/blog/zero-trust-for-ai-agents-why-every-tool-call-needs-a-policy-decision</link>
            <guid isPermaLink="false">https://runcycles.io/blog/zero-trust-for-ai-agents-why-every-tool-call-needs-a-policy-decision</guid>
            <pubDate>Tue, 24 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Apply zero-trust principles to AI agent tools with mandatory pre-execution checks, scoped budgets, application authorization, and auditable settlement."]]></description>
            <author>Cycles Team</author>
            <category>security</category>
            <category>zero-trust</category>
            <category>agents</category>
            <category>MCP</category>
            <category>OWASP</category>
            <category>production</category>
            <category>tool-calling</category>
            <category>governance</category>
        </item>
        <item>
            <title><![CDATA["Runtime Permissions for AI Agent Actions"]]></title>
            <link>https://runcycles.io/blog/ai-agent-runtime-permissions-control-actions-before-execution</link>
            <guid isPermaLink="false">https://runcycles.io/blog/ai-agent-runtime-permissions-control-actions-before-execution</guid>
            <pubDate>Mon, 23 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Compose application authorization with caller-assigned risk budgets to control AI agent side effects before protected tools execute in production today."]]></description>
            <author>Albert Mavashev</author>
            <category>runtime-authority</category>
            <category>action-authority</category>
            <category>action-control</category>
            <category>agents</category>
            <category>side-effects</category>
            <category>permissions</category>
            <category>engineering</category>
        </item>
        <item>
            <title><![CDATA["Block Agent Emails Before Execution"]]></title>
            <link>https://runcycles.io/blog/action-authority-demo-support-agent-walkthrough</link>
            <guid isPermaLink="false">https://runcycles.io/blog/action-authority-demo-support-agent-walkthrough</guid>
            <pubDate>Sun, 22 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["See a support-agent demo where a mandatory decorator requests a Cycles reservation and a zero-allocation toolset ledger prevents the attempted email call."]]></description>
            <author>Albert Mavashev</author>
            <category>action-authority</category>
            <category>demo</category>
            <category>agents</category>
            <category>runtime-authority</category>
            <category>walkthrough</category>
            <category>action-control</category>
            <category>side-effects</category>
        </item>
        <item>
            <title><![CDATA["AI Agent Unit Economics: Cost and Margin Analysis"]]></title>
            <link>https://runcycles.io/blog/ai-agent-unit-economics-cost-per-conversation-per-user-margin</link>
            <guid isPermaLink="false">https://runcycles.io/blog/ai-agent-unit-economics-cost-per-conversation-per-user-margin</guid>
            <pubDate>Sun, 22 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Model AI agent costs by conversation, user, and margin, then use runtime budget enforcement to bound variance and protect unit economics in production."]]></description>
            <author>Cycles Team</author>
            <category>unit-economics</category>
            <category>costs</category>
            <category>enterprise</category>
            <category>margins</category>
            <category>best-practices</category>
        </item>
        <item>
            <title><![CDATA["LangGraph Budget Control for Durable Runs"]]></title>
            <link>https://runcycles.io/blog/langgraph-budget-control-durable-execution-retries-fan-out</link>
            <guid isPermaLink="false">https://runcycles.io/blog/langgraph-budget-control-durable-execution-retries-fan-out</guid>
            <pubDate>Sat, 21 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["LangGraph runs pause, resume, retry, and fan out. Enforce per-run and per-node spend limits before durable execution turns cost spikes into cost cliffs."]]></description>
            <author>Cycles Team</author>
            <category>langgraph</category>
            <category>budgets</category>
            <category>engineering</category>
            <category>durable-execution</category>
            <category>best-practices</category>
        </item>
        <item>
            <title><![CDATA["Multi-Agent Budget Control: CrewAI, AutoGen, OpenAI"]]></title>
            <link>https://runcycles.io/blog/multi-agent-budget-control-crewai-autogen-openai-agents-sdk</link>
            <guid isPermaLink="false">https://runcycles.io/blog/multi-agent-budget-control-crewai-autogen-openai-agents-sdk</guid>
            <pubDate>Sat, 21 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Multi-agent delegation creates recursive cost exposure. Learn how to enforce per-agent budget boundaries in CrewAI, AutoGen, and OpenAI Agents SDK runtimes."]]></description>
            <author>Cycles Team</author>
            <category>multi-agent</category>
            <category>crewai</category>
            <category>autogen</category>
            <category>openai</category>
            <category>budgets</category>
            <category>engineering</category>
            <category>best-practices</category>
        </item>
        <item>
            <title><![CDATA["Runtime Authority vs Guardrails vs Observability"]]></title>
            <link>https://runcycles.io/blog/runtime-authority-vs-guardrails-vs-observability</link>
            <guid isPermaLink="false">https://runcycles.io/blog/runtime-authority-vs-guardrails-vs-observability</guid>
            <pubDate>Fri, 20 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Runtime authority, guardrails, and observability solve different agent control problems. What each does, where each falls short, why you need all three."]]></description>
            <author>Albert Mavashev</author>
            <category>runtime-authority</category>
            <category>guardrails</category>
            <category>observability</category>
            <category>comparisons</category>
            <category>concepts</category>
        </item>
        <item>
            <title><![CDATA["What Is Runtime Authority for AI Agents?"]]></title>
            <link>https://runcycles.io/blog/what-is-runtime-authority-for-ai-agents</link>
            <guid isPermaLink="false">https://runcycles.io/blog/what-is-runtime-authority-for-ai-agents</guid>
            <pubDate>Fri, 20 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Runtime authority decides whether an AI agent action proceeds before execution. See how it differs from observability, rate limits, and model guardrails."]]></description>
            <author>Albert Mavashev</author>
            <category>runtime-authority</category>
            <category>agents</category>
            <category>concepts</category>
            <category>guide</category>
        </item>
        <item>
            <title><![CDATA["Hard Limits on AI Agent Side Effects"]]></title>
            <link>https://runcycles.io/blog/ai-agent-action-control-hard-limits-side-effects</link>
            <guid isPermaLink="false">https://runcycles.io/blog/ai-agent-action-control-hard-limits-side-effects</guid>
            <pubDate>Thu, 19 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Use mandatory tool boundaries and caller-assigned risk budgets to limit AI agent side effects, while keeping application authorization separate at runtime."]]></description>
            <author>Cycles Team</author>
            <category>action-control</category>
            <category>risk</category>
            <category>agents</category>
            <category>engineering</category>
            <category>best-practices</category>
        </item>
        <item>
            <title><![CDATA["Budget Limits for Claude Code, Cursor & Windsurf"]]></title>
            <link>https://runcycles.io/blog/claude-code-cursor-windsurf-budget-limits-mcp</link>
            <guid isPermaLink="false">https://runcycles.io/blog/claude-code-cursor-windsurf-budget-limits-mcp</guid>
            <pubDate>Thu, 19 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Add Cycles budget tools to Claude Code, Cursor, and Windsurf, then place hard enforcement safely in a required hook, handler, gateway, or runtime boundary."]]></description>
            <author>Cycles Team</author>
            <category>MCP</category>
            <category>claude-code</category>
            <category>cursor</category>
            <category>windsurf</category>
            <category>budgets</category>
            <category>agents</category>
        </item>
        <item>
            <title><![CDATA["Manifest vs Cycles: Routing vs Runtime Authority"]]></title>
            <link>https://runcycles.io/blog/manifest-vs-cycles-routing-vs-runtime-authority</link>
            <guid isPermaLink="false">https://runcycles.io/blog/manifest-vs-cycles-routing-vs-runtime-authority</guid>
            <pubDate>Wed, 18 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Manifest optimizes which model handles a request. Cycles decides whether the request is allowed to execute at all. Different layers, different problems."]]></description>
            <author>Cycles Team</author>
            <category>comparisons</category>
            <category>architecture</category>
            <category>agents</category>
        </item>
        <item>
            <title><![CDATA["OpenAI API Budget Limits: Per-User and Per-Tenant"]]></title>
            <link>https://runcycles.io/blog/openai-api-budget-limits-per-user-per-run-per-tenant</link>
            <guid isPermaLink="false">https://runcycles.io/blog/openai-api-budget-limits-per-user-per-run-per-tenant</guid>
            <pubDate>Wed, 18 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Enforce OpenAI API budgets per user, run, and tenant before each instrumented call, with atomic reservations, accurate settlement, and scoped ledgers."]]></description>
            <author>Cycles Team</author>
            <category>openai</category>
            <category>budgets</category>
            <category>agents</category>
            <category>per-user</category>
            <category>per-tenant</category>
        </item>
        <item>
            <title><![CDATA["AI Agent Budget Control: Enforce Hard Spend Limits"]]></title>
            <link>https://runcycles.io/blog/ai-agent-budget-control-enforce-hard-spend-limits</link>
            <guid isPermaLink="false">https://runcycles.io/blog/ai-agent-budget-control-enforce-hard-spend-limits</guid>
            <pubDate>Tue, 17 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Use atomic reserve-commit controls before AI agent calls to bound submitted cost estimates, handle concurrency, and reconcile actual usage after execution."]]></description>
            <author>Cycles Team</author>
            <category>budgets</category>
            <category>agents</category>
            <category>engineering</category>
            <category>best-practices</category>
        </item>
        <item>
            <title><![CDATA["Cycles vs LLM Proxies and Observability"]]></title>
            <link>https://runcycles.io/blog/cycles-vs-llm-proxies-and-observability-tools</link>
            <guid isPermaLink="false">https://runcycles.io/blog/cycles-vs-llm-proxies-and-observability-tools</guid>
            <pubDate>Tue, 17 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Compare LLM proxies, observability tools, and Cycles to understand where routing, tracing, and pre-execution budget enforcement fit in an agent stack."]]></description>
            <author>Cycles Team</author>
            <category>architecture</category>
            <category>comparisons</category>
            <category>best-practices</category>
        </item>
        <item>
            <title><![CDATA["Multi-Tenant AI Cost Control: Budgets and Isolation"]]></title>
            <link>https://runcycles.io/blog/multi-tenant-ai-cost-control-per-tenant-budgets-quotas-isolation</link>
            <guid isPermaLink="false">https://runcycles.io/blog/multi-tenant-ai-cost-control-per-tenant-budgets-quotas-isolation</guid>
            <pubDate>Mon, 16 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["One customer's runaway agent can degrade service for every tenant. Enforce per-tenant budgets, hierarchical limits, and scope-level isolation with Cycles."]]></description>
            <author>Cycles Team</author>
            <category>multi-tenant</category>
            <category>budgets</category>
            <category>architecture</category>
            <category>costs</category>
        </item>
        <item>
            <title><![CDATA["Budget Wrapper vs Runtime Authority for AI Agents"]]></title>
            <link>https://runcycles.io/blog/vibe-coding-budget-wrapper-vs-budget-authority</link>
            <guid isPermaLink="false">https://runcycles.io/blog/vibe-coding-budget-wrapper-vs-budget-authority</guid>
            <pubDate>Mon, 16 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["A budget wrapper is easy to prototype but hard to operate safely. Compare it with runtime authority built for concurrency, retries, and tenant isolation."]]></description>
            <author>Cycles Team</author>
            <category>architecture</category>
            <category>agents</category>
            <category>budgets</category>
            <category>engineering</category>
        </item>
        <item>
            <title><![CDATA["AI Agent Budget Patterns: A Practical Guide"]]></title>
            <link>https://runcycles.io/blog/agent-budget-patterns-visual-guide</link>
            <guid isPermaLink="false">https://runcycles.io/blog/agent-budget-patterns-visual-guide</guid>
            <pubDate>Sun, 15 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Structure AI agent budgets for tenant isolation, workflow caps, run-level limits, and graceful degradation with practical patterns for production systems."]]></description>
            <author>Cycles Team</author>
            <category>patterns</category>
            <category>budgets</category>
            <category>architecture</category>
            <category>guide</category>
        </item>
        <item>
            <title><![CDATA["AI Agent Cost Management: The Complete Guide"]]></title>
            <link>https://runcycles.io/blog/ai-agent-cost-management-guide</link>
            <guid isPermaLink="false">https://runcycles.io/blog/ai-agent-cost-management-guide</guid>
            <pubDate>Sun, 15 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["A practical maturity model for AI agent costs — from no controls through monitoring, alerting, soft limits, and hard enforcement with trade-offs per tier."]]></description>
            <author>Cycles Team</author>
            <category>costs</category>
            <category>engineering</category>
            <category>best-practices</category>
        </item>
        <item>
            <title><![CDATA["5 Agent Cost Failures Runtime Budgets Can Bound"]]></title>
            <link>https://runcycles.io/blog/ai-agent-failures-budget-controls-prevent</link>
            <guid isPermaLink="false">https://runcycles.io/blog/ai-agent-failures-budget-controls-prevent</guid>
            <pubDate>Sat, 14 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Review five illustrative AI agent cost scenarios and learn how mandatory pre-execution budget reservations can bound spend before it escapes control early."]]></description>
            <author>Cycles Team</author>
            <category>incidents</category>
            <category>costs</category>
            <category>best-practices</category>
        </item>
        <item>
            <title><![CDATA["The True Cost of Uncontrolled AI Agents"]]></title>
            <link>https://runcycles.io/blog/true-cost-of-uncontrolled-agents</link>
            <guid isPermaLink="false">https://runcycles.io/blog/true-cost-of-uncontrolled-agents</guid>
            <pubDate>Sat, 14 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["Uncontrolled AI agents create unpredictable spend and failure exposure. Review real scenarios and the role of pre-execution runtime budget authority today."]]></description>
            <author>Cycles Team</author>
            <category>costs</category>
            <category>agents</category>
            <category>incidents</category>
            <category>best-practices</category>
        </item>
        <item>
            <title><![CDATA["How Much Do AI Agents Actually Cost?"]]></title>
            <link>https://runcycles.io/blog/how-much-do-ai-agents-cost</link>
            <guid isPermaLink="false">https://runcycles.io/blog/how-much-do-ai-agents-cost</guid>
            <pubDate>Fri, 13 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["AI agent cost breakdown across OpenAI, Anthropic, and Google, with current token rates and illustrative support, coding, and data-pipeline scenarios today."]]></description>
            <author>Cycles Team</author>
            <category>costs</category>
            <category>agents</category>
            <category>guide</category>
        </item>
        <item>
            <title><![CDATA["Introducing the Cycles Blog"]]></title>
            <link>https://runcycles.io/blog/introducing-cycles-blog</link>
            <guid isPermaLink="false">https://runcycles.io/blog/introducing-cycles-blog</guid>
            <pubDate>Fri, 13 Mar 2026 00:00:00 GMT</pubDate>
            <description><![CDATA["The Cycles blog covers engineering, product updates, and practical patterns for AI agent runtime authority, exposure management, and cost control in practice."]]></description>
            <author>Cycles Team</author>
            <category>announcement</category>
        </item>
    </channel>
</rss>