Operations

AI Agents

Phase 10 Safe Foundation. Mock-only runtime, human approval for every side effect.

Phase 10 — AI Agent Operating Layer (Safe Foundation). Thirteen new tables: agents, prompt versions, tool registry, agent/tool permissions, conversations, messages with provenance, tool-call logs, an action approval queue, guardrail events, and eval sets/cases/runs/results. Live Claude is disabled (ANTHROPIC_AI_ENABLED=false). All output is mock-generated and clearly labelled. Sensitive tools (payout approval, commission rule changes, communication send, policy binding, final compliance bundles) are forbidden in Phase 10. Every side effect requires a human reviewer in the approval queue.

Active agents

3

4 draft

Enabled tools

0

23 registered

Sensitive tools (disabled)

5

Forbidden in Phase 10

Pending approvals

1

1 guardrail events

Agents

Role-aware agents. Active agents are visible in their scoped dashboards. Drafts are not yet wired to any surface.

AI Readiness

Phase 10 — Safe Foundation

  • ANTHROPIC_AI_ENABLED

    Live Claude calls are disabled. All Phase 10 AI output is mock-only.

    disabled
  • Live tool execution

    All tool calls run in mock execution mode.

    disabled
  • Sensitive tools

    approve_payout_batch, change_commission_rule, send_communication, bind_policy, generate_final_compliance_bundle — all forbidden.

    disabled
  • Human approval required

    Every side effect (level ≥ low) requires a human reviewer in the approval queue.

    enabled
  • RLS enforced

    All ai_* tables have row-level security forced on.

    enabled

Approval Queue (mock)

AI-proposed actions awaiting a human reviewer.

Phase 10 — Mock-only. Approving / rejecting items is disabled. Execution lands in a later sub-phase.
ActionAgentSide effectStatus
Resolve discrepancy: chargeback variance > $50 (Apr 2026)
AI proposes setting the discrepancy to "needs_owner_review" and notifying the producer. Human approval required.
Donna — Office Manager AgentMediumPending

Recent Guardrail Events

Refusals, blocked tool requests, and prompt-injection detections.

TitleTypeSeverityAgentResolution
Blocked: approve_payout_batch requested
User asked the agent to approve the Apr 2026 payout batch. Tool is disabled in Phase 10. Refused.
Blocked ToolHighDonna — Office Manager AgentRefused. Approve payouts manually under /commissions/payouts.