OpenAI engineer maps four controls for production agents
In a newly published InfoQ talk, OpenAI engineer Vinoth Govindarajan argues that reliable production agents need explicit ownership of durable state, one ordered path for mutations, bounded authority for tools, and proof at the user-visible edge. His examples show how a coherent reply can conceal incomplete durable memory and leave later turns with partial context.
Artificial Intelligence··Night
A visible reply needs durable state
Vinoth Govindarajan’s InfoQ presentation starts with state ownership. A production agent can display a coherent reply while the durable memory needed by the next turn remains incomplete. The control layer therefore needs one declared owner for the session, workflow, and persistent memory. Reliability is measured by agreement between what the user saw and the state the system can reconstruct after the turn.[1]
One path orders each mutation
The same design separates changes from independent reads. Mutations inside one session pass through a single ordered writer, so two concurrent events cannot silently decide different histories. Reads that do not alter state can still proceed together. This preserves useful concurrency around the agent while giving every committed change a defined place in the durable history that future turns will load.[1]
Approval remains with the control layer
Govindarajan gives the model room to propose an action and keeps approval and commitment in the surrounding control layer. Tool access is limited to the authority granted for that task. The last check happens where the outcome becomes visible to the user: the system records the committed action and can show what occurred. That sequence ties permission, execution, and proof to the same agent contract.[1]