AI safety controls need independent logs, synthetic probes, expiring exceptions, and end-to-end evidence when blocking is disabled.