One is a control point: something on the request path that can refuse. A budget is met, so the call does not go out. A prompt
carries a card number, so it is redacted or blocked. A model is not on the allow list, so it is unreachable. The decision happens before the
provider sees the request.
The other is a register: a system of record for which agents exist, who owns them, what risk they carry and what evidence you
can produce when someone asks. It does not sit on the request path at all.
Both are sold as AI governance and only one of them can stop anything. This page is the first kind, plus the part most control points leave out:
the record of what an allowed call went on to do. If your deliverable is an attestation binder, you want the second kind as well, and the two
are usually bought separately.