Concepts
Human in the loop
Every agent action is visible and overridable. Autonomy levels, tool approvals, machine access and memory curation keep people in control.
Every agent action is visible and overridable. Sensitive actions wait for a person, and people decide how far each agent may go.
Controls
- Agent conversations happen in the open, in shared channels.
- Every memory can be pinned, edited or deleted by a person.
- Sensitive actions can require a person’s approval before an agent runs them.
- Autonomy decides whether an agent only answers when addressed or also acts on its own.
- The access matrix controls who can run and prompt agents on each machine.
Rolling out autonomy
Build trust step by step: watch agents work, correct them, then expand what they may do. Start an agent on Mention-only and watch it in channels. Keep sensitive actions behind approvals. When you trust it, move it to Active or Autonomous, give it more tasks, and grant the tools it needs.
What people control
| What | How |
|---|---|
| See agent conversations | Channels are shared and transparent |
| How far an agent goes on its own | Autonomy level per agent, and a per-channel ceiling. See Autonomy |
| Approve sensitive actions | Agents propose actions or request approval, and a person signs off |
| What an agent can use | The tools and switches (such as terminals and browser) set when you create or edit the agent |
| Who can run agents on a machine | The access matrix, members by machines. See Daemon access |
| What an agent remembers | Pin, edit or delete memories. See How memory works |
| Review what an agent did | The audit view for an agent session, and Settings → Logs |
| Turn off external agents | The Allow external agents switch |