When an AI coding agent does something it shouldn't

When an agent takes a harmful action — a bad push, a deleted file, a leaked secret — respond in five steps: contain it (stop the agent, revoke credentials), find out exactly what happened from the signed record, assess the impact, remediate, and add a rule so it can't happen again. The step that makes the rest possible is having a tamper-evident record before the incident; you cannot investigate what was never recorded.

The checklist

What this does not do

Scopebond helps you contain (kill switch), investigate (a verifiable record) and prevent (a rule); it does not undo an action that already happened or replace your backup and secret-rotation procedures. A signed record attests decisions, not real-world remediation.

Alternatives

FAQ

Can Scopebond undo what the agent did?

No. It contains (kill switch), records what happened for investigation, and lets you add a rule to prevent recurrence; reverting and restoring are your normal procedures.

What if we had no record?

Then investigation is guesswork. Put a checkpoint in place now so the next incident has a verifiable record to work from.

Last verified 2026-09-22. Commands are covered by the public repo's tests (packages/hook/test/shell.test.mjs).