Four threads converge today around a single question: who can actually prove what an autonomous AI system did, and when. A new arXiv framework called AI Trust OS argues governance has to run continuously at execution time, not as a one-off certification. A companion paper maps the distinct security risks that appear once agents start delegating to other agents rather than acting alone. Meanwhile, the Agentic AI Institute puts a number on the gap practitioners already feel: 72