Use when
- An AI agent or automation can create side effects that affect customers, money, access, production systems, legal status, public content, sensitive data, or external recipients.
- Users may assume the agent is only planning, drafting, or researching while it can actually execute tools.
- The product needs to classify which agent actions can run automatically and which require explicit authorization.
- A prior incident, audit finding, or UX review shows the agent acted before users approved the exact payload.