Review the kill switch protocol log

  • Release version: Zurich
  • Updated July 21, 2026
  • 1 minute to read
  • The kill switch protocol log shows agents that you deactivated and reinstated for the instance. You can view audit log information for each AI agent which can help you stay compliant with regulatory guidance and your business rules.

    Before you begin

    Role required: AI steward [sn_ai_governance_ai_steward]

    Procedure

    1. Navigate to Security > Overview > Contained AI agents.
      All contained AI agents are shown for the last 30 days.
      Kill switch protocol log showing multiple deactivated AI agents and one AI agent reinstatement in progress.
      Table 1. Kill switch protocol log
      Field Description
      Status The current state of the operation. Possible values are:
      • Completed — The operation was successful. If the agent was deactivated, all AI agent credentials were revoked across all providers, the session was ended, and no new access tokens will be provisioned. If the agent was reinstated, all AI agent credentials were restored across all providers.
      • Failed — The containment or reinstatement operation didn't take effect on any provider. Failed to deactivate or reinstate agent on all configured providers or skipped providers (for example, agent not found, subflow error, or an unhandled exception).
      • In progress — The operation is actively executing. Policy enforcement point (PEP) subflows (for example, AWS Bedrock) are running, with audit log information being captured.
      • Partial — The operation succeeded on at least one provider and failed on at least one provider. For example, the AWS Bedrock AI agent deactivation succeeded, but the Okta deactivation failed.
      AI agent name The name of the contained AI agent. Select the name to go to the AI asset in Inventory.
      Start time The date and time when the operation was initiated.
      End time The date and time when the operation ended, regardless of status.
      Operation The operation that was attempted. Possible values are:
      • Deactivate
      • Reinstate
    2. To show contained AI agents for all time, select Show all.
    3. In an AI agent row, under More actions, select View details.
      Context, identity, enforcement, and audit log information is shown.