Action request
Name the exact action, target, scope, requester, and intended result.
ARBITER places a recognizable authority contract between AI intent and meaningful action. Providers, models, and adapters may change; the request, policy, approval, grant, execution, receipt, and revocation boundary remains inspectable.
The current public gates are reference proofs. Production SDK distribution, credential custody, tenant isolation, and adapter admission remain separately governed release decisions.
Name the exact action, target, scope, requester, and intended result.
Evaluate deterministic rules before model preference or tool availability.
Require a named approver where risk, money, access, or customer impact demands it.
Issue narrow, short-lived, purpose-bound authority instead of standing credentials.
Execute only the approved operation against the approved target.
Return evidence, then record use, expiry, denial, revocation, or replay rejection.
Use the email, shell, file, remote-support, and network-change gates to inspect allow, deny, approval, one-use authority, constrained execution, receipts, and expiry.
A production integration starts with one action, one target model, explicit identity, deterministic policy, a human checkpoint where required, a constrained adapter, rollback, and evidence that failure modes close safely.