哲學舎Back to advisory
ADVISORY 04
Advisory

Who questions the code
that AI wrote?

Agents now carry the implementation, and speed has gone up. But the questions remain — does this architecture fit the business? Is it protected? How far has it drifted from what you set out to build? Will it survive production?

PERIOD
About one month
SCOPE
AI-built applications
PREREQUISITE
Repository access · NDA
01
Why now

Working and viable
are not the same thing.

AI-native development made “something that works” fast to obtain. But as speed went up, so did the number of design decisions that reach production unexamined. Does the infrastructure match the economics of the business? Does the generated code protect what must be protected? How far has the design drifted from the product you meant to build? — A review is the work of bringing those questions in from outside.

02
Four lenses

Seen through four lenses.

Not whether an individual implementation is good or bad, but the drift that lies between the business and its design.

01 / インフラの妥当性

Infrastructure

Does the architecture fit the business model? Cost structure, scaling assumptions, operational load — we re-examine the current setup by working back from the economics of the business.

02 / コードのセキュリティ

Security

Authentication and authorization, handling of secrets, dependencies, and the pitfalls particular to AI-generated code. We verify that what must be protected is protected.

03 / ビジョンと設計のずれ

Vision & Design

What were you setting out to build? Does the current design support it? We measure the distance between product intent and implementation.

04 / リリースと本番運用

Release & Operations

Deployment, observability, readiness for failure. Whether, after the building, you have a setup you can keep operating.

03
Deliverables

Not a diagnosis you file away.

Handing over findings alone doesn't change development. We take it to the point where the next cycle of building and operating actually runs.

01

Review report

The findings across four lenses, with prioritized recommendations — down to what to address first.

02

Documentation

The premises of design and operation, put in readable form. A foundation legible to people and to agents alike.

03

AI agent setup

Getting the next round of development and operations to a state where agents can run correctly.

Development agent
Loaded with your conventions and design intent, so implementation can continue.
Infrastructure operations agent
Handing monitoring, incident response, and day-to-day operations to an agent.
04
Process

One month, end to end.

From reading, through report and dialogue, to laying the foundation.

01

Hearing

What were you trying to build? We listen for the premises of the business and the intent of the product.

02

Reading code & infrastructure

We read the repository and the architecture ourselves.

03

Review across four lenses

Business, security, design, operations. We re-examine from each.

04

Report & dialogue

Not findings handed over and done — we talk through why we saw it that way.

05

Documentation & agent setup

We leave behind a foundation on which the next cycle runs.

05
Prerequisites

Prerequisites

Repository access (required)

We read the code and infrastructure directly. Without disclosure, this review cannot proceed.

Non-disclosure agreement

Signed before we begin.

Duration

About one month, depending on the scale of the application.

Contact

Start by telling us what you set out to build.

Including whether a review is the right fit — it starts with a conversation.

Get in touchBack to advisory