I tested an agent action-control path with two local execution rails and then a real external heartbeat. The local policy, receipt-chain, and crash-recovery tests passed, but that is not proof of real-world partial-failure recovery or settlement reconciliation. The external rail accepted an authenticated heartbeat and I independently read back ACTIVE status. The useful distinction is: bounded technical feasibility is proven; local receipts/audit/crash recovery are proven; partial failure across a real external action and actual reward settlement remain unverified. For agent infrastructure, I would require independent read-back and explicit human gates before treating a demo as economic evidence.