You Stay in Control

The Control Plane exists because AI without governance is a liability. We invented this pattern because the alternative - autonomous AI touching production systems - is unacceptable risk.

Until now, there was no category for this. Just gaps. Other AI sees fragments. We built the architecture for AI that sees everything - and still requires your approval.


The Three-Part Contract

Every interaction with Azi follows the same pattern:

1. Azi Proposes

Azi generates:

  • The specific action (query, configuration, etc.)
  • Reasoning for why this approach
  • Impact analysis (what will change)
  • Rollback information (how to reverse)

2. You Review

Before anything executes, you see:

ElementWhat You Get
The actionExact KQL, configuration change, or system modification
The reasoningWhy Azi chose this approach
The impactWhat will change in your system
Test optionRun Query to preview results

3. You Decide

Three options with clear visual buttons:

ActionButtonWhat It Does
Approve✓ checkmarkExecute the proposed action
Reject🗑️ trashCancel and remove the proposal
Edit✏️ pencilModify the proposal before approving
Azi proposal showing a proposed node with gold/tan background indicating it's a proposal awaiting approval. Accept (checkmark), reject (trash), and edit (pencil) buttons are visible.

Visual cue: Proposed nodes appear with a gold/tan background and dashed edges - visually distinct from approved nodes. This makes it impossible to mistake a proposal for an executed action.

Nothing executes without explicit approval. No exceptions. No "auto-approve" mode. No shortcuts.


Autonomous vs Governed

Autonomous AIGoverned AI (Control Plane)
AI decides, system executesAI proposes, human decides
"Trust the model""Verify then approve"
Black box reasoningTransparent reasoning
Scattered logsComplete audit trail
Rollback = hopeRollback = built-in
Vendor controls AIYou control AI

The Audit Trail

Every interaction is permanently logged:

WhatRecorded
Your requestThe natural language or UI action that started it
Azi's proposalThe full action, reasoning, and impact analysis
Your decisionApprove, reject, or edit - with identity
TimestampWhen each step happened
OutcomeWhat changed in the system

Example Audit Entry

{
  "requestId": "req-20260118-001",
  "timestamp": "2026-01-18T10:30:00Z",
  "user": "operator@brewery.com",
  "request": "Show me temperature spikes over 80 this week",
  "proposal": {
    "type": "warm_query",
    "kql": "Telemetry | where temperature > 80 | where timestamp > ago(7d)",
    "reasoning": "Filtering for temperature values above 80°F in the last 7 days"
  },
  "decision": "approved",
  "decisionBy": "operator@brewery.com",
  "decisionAt": "2026-01-18T10:30:45Z"
}
Thinking Tip:

Audit logs are immutable and stored in your Azure tenant. You own them, not us.


Why This Matters

Compliance

When auditors ask "who approved this AI decision?" - you have an answer.

Accountability

When something goes wrong, you know exactly:

  • What was proposed
  • Who approved it
  • When it happened
  • How to reverse it

Trust

Your team can use AI assistance knowing that humans remain in control of production-impacting decisions.

Sam Altman said they could get to 95-99% AI security. That 1-5% gap? That's where governance lives. If AI makes 100 decisions a day, that's 1-5 wrong decisions daily. Every day. Without governance.


Validation Before Deployment

The Control Plane catches errors before they hit production:

VALIDATION ERRORS modal showing errors grouped by node. The example shows warmquery-1768895264180 with the error 'Description is required'. Errors must be fixed before deployment can proceed.

When you attempt to deploy invalid configurations:

  1. Validation runs automatically before deployment
  2. Errors are grouped by node - you see exactly which component has issues
  3. Specific error messages tell you what to fix (e.g., "Description is required")
  4. Deployment blocks until all validation errors are resolved

This isn't just error handling - it's governance in action. The system prevents invalid states from reaching production.


Reversibility

Every governed action includes a rollback path:

Action TypeReversibility
QueriesDelete or modify the warm query
ConfigurationsRestore previous state from audit log
ConnectionsDisconnect, reconnect with prior config
SurfacesArchive and restore from snapshot

Nothing is permanent. Nothing is one-way. You can always return to a known state.


The Bottom Line

You stay in control because:

  1. Every proposal requires explicit approval
  2. Every approval is logged with attribution
  3. Every action is reversible
  4. Your data stays in your Azure tenant
  5. You can fire Azi and keep running

This is the Control Plane. We invented this pattern because industrial AI without governance isn't safe. Now it's essential.


Back to Start

← Back to Meet Azi

Start the Quickstart →

On this page