Guide: What Is The AI Agent Actually Allowed to Do?

A lightweight check for defining what one agent may recommend, prepare, approve or execute and where a human must take over. Pick one agent and one workflow, try not to design the enterprise autonomy framework today.

What Is The AI Agent Actually Allowed to Do
Illustration by Artificial Intelligence for Vieews.com
Guide / Practical Check

What Is This Agent Actually Allowed to Do?

A lightweight check for defining what one agent may recommend, prepare, approve or execute — and where a human must take over.

Quick reminder

The agent’s capability should not be seen as authorisation.

What this Guide helps with

Use it when teams are moving from AI assistants that suggest work toward AI agents that can act in systems, send communications or make bounded decisions.

Keep it small

Pick one agent and one workflow. Do not design the enterprise autonomy framework today.

The Pattern behind this Guide

Agent Delegation Limits: this public Pattern quiz leads into this Guide.

The check

List the actions in one workflow
Break the workflow into actual verbs: read, draft, recommend, create, approve, send, change, pay, delete.
Assign a delegation level
Recommend, Prepare, Approve or Execute for each action.
Set the boundary conditions
Value, risk, reversibility, customer impact, data sensitivity or another limit.
Name the human control
Who reviews, approves, overrides or receives escalation?
Define the exception route
What happens when the agent is uncertain, blocked or outside limits?
Record evidence
Logs, approvals, action history and ownership that show what the agent did.

Use this small log

ActionDelegation levelBoundaryHuman control
Draft supplier responsePrepareNo external sendBuyer reviews
Approve low-value refundApproveWithin agreed thresholdEscalate above threshold
Update CRM recordExecuteDefined fields onlyAudit log + exception queue

Where this commonly hides

Workflow buildersA demo quietly moves from drafting to acting.
PermissionsSystem access enables more than policy intended.
Low-risk automationHumans still approve everything because delegation was never defined.
ExceptionsThe agent has no route when the normal rule fails.

Quick examples

What you seeQuestion to ask
Agent can draft and sendWhich verb is actually authorised?
Agent approves under £XWho set the threshold and who owns exceptions?
Agent acts but logs are weakCould a human reconstruct what happened?
Agent stops on ambiguityWho receives the escalation and context?

The Satire

The agent was authorised to 'help', unfortunately the 'help' still needs role and access definition.

Pattern quiz

Would You Let This Agent Recommend, Prepare, Approve or Execute?

Take the quick quiz that leads into this Guide.

More Patterns

Keep spotting what returns.

Explore more quiz-led workplace Patterns.

More Guides

Follow the work.

Use another lightweight Guide on one real workflow.

Want the deeper version when it lands?

The deeper Agent Delegation Limits Insight and future toolkit are coming later. Subscribe for the next Pattern drop and we will let you know when they land.

Lightweight self-check, not an organisational diagnosis or instruction to remove required controls or support.