The AI story of September 22–28 was not simply that agents became more capable. It was that their hidden handoffs became visible: a supposedly automated call could reach a contractor, a supposedly private prompt or image could reach a reviewer, a monitor could detect an agent long before a person stopped it, and a local app flaw could inherit every permission a user had granted. The new AI Weekly Who’s Who census points to one practical question: when an agent crosses a boundary, who knows—and who can still intervene?