ALLOW
Current policy and valid authority permit the exact action.
An AI Action Gate is the checkpoint between AI intent and a real side effect. ARBITER Gate is INTIGNAI's provider-neutral implementation: exact action binding, deterministic policy, approval when required, narrow authority, execution-time revalidation, constrained execution, replay protection, and an Outcome Receipt.
Recommendation is not approval. Approval is evidence, not standing authority. Execution is permitted only when the exact action binding, current policy state, and scoped grant all match. Consequential execution produces an Outcome Receipt.
Models and providers can change without becoming the source of business authority. The Gate remains the independent control boundary immediately before meaningful execution.
Current policy and valid authority permit the exact action.
The action is forbidden under the evaluated state.
Required truth is missing, stale, contradictory, or not trustworthy enough to authorize execution.
Policy requires an authorized human decision. Matching approval is necessary evidence, but it does not create standing execution authority.
ARBITER Gate v1 binds request ID, actor, agent, provider, action, target, parameters, authority context, and policy version into the action digest. A materially different binding gets a different digest and cannot inherit the old approval. Approval evidence and the scoped grant remain separate authority-lifecycle records.
A receipt separates provider identity, agent identity, executor identity, policy and risk state, approval evidence, authority lifecycle, and observed execution result. It is evidence, not a chain-of-thought transcript.
Hosted models, local models, deterministic software, MCP clients, human-assisted agents, and future embodied systems can all sit above the same authority contract. Capability never silently becomes permission.
Open developer surfaceThe hosted examples are synthetic reference gates. Production identity, durable grants, atomic one-use consumption, credential custody, monitoring, rollback, receipt durability, and incident response are separately qualified during implementation.
See controlled actions