Do OpenAI Agents SDK guardrails run on every agent after a handoff?

No. An input guardrail only runs on the agent that starts the run, and an output guardrail only runs on the agent that produces the final answer, so any agent picked up in the middle of a handoff chain runs with no agent-level guardrail of its own.

The SDK’s own docs call this out and point to tool guardrails as the fix when a workflow includes handoffs: a check before or after a specific function-tool call, attached to the tool rather than to whichever agent happens to be holding the conversation when it’s called. A tool guardrail fires no matter which agent in the chain invokes it, where an agent-level input or output guardrail only ever sees the two ends of the handoff. A Claude Agent SDK hook can attach to the same point in a tool call regardless of which part of the agent triggers it, the same design choice solving the same gap in a different SDK.

sources

keep reading

More on this.

Two ways to run Tessary.

Tessary is an open-source agent reliability platform. Cloud and self-hosted run the same workflow on the OpenTelemetry traces your agent already emits.

Tessary Cloud

We host it for you. Send your first trace with nothing to deploy and no model key.

what's includedper organization
traces
10,000 per calendar month
stored trace data
1 GB
retention
30 days
model credit
$10, one-time, for triage and root-cause analysis
credit card
not required

Self-hosted Tessary

Run the open-source code on your own infrastructure with one command. Add your own model key for triage and root-cause analysis.

Self-host Tessary for me by following https://github.com/tessaryai/tessary/blob/main/setup.md

docker compose -f oci://docker.io/tessaryai/tessary:compose up -d -y