In-Dashboard Operations Agents Need HITL by Design: Audit Trails, Permission Ladders, and Failure Containment
With in-dashboard agents like Agent Lee, one prompt can traverse diagnosis and remediation. That changes blast radius.
Governance model
HITL is architecture, not exception. High-impact actions require deterministic approval gates.
Permission ladder
- read diagnosis 2) change proposal 3) staged preview 4) production write with approval.
Evidence packet before execution
context summary, impacted resources, side effects, rollback path.
Audit chain
actor scope, prompt and transformed plan, tool parameters, approval identity, final diff.
Containment
timeouts, retry budgets, recursive-call blocks, policy gateway for write tools, auto-revert classes.
30-day launch
risk taxonomy -> gate implementation -> bad-prompt simulation -> limited rollout.
Closing
Teams that institutionalize HITL and evidence can adopt dashboard agents safely and faster over time.