Concept icon
Concept

Shared Control and Privilege Boundaries in Runbook Modification

StateM balances agent autonomy with governance by exposing runbooks as shared workspace artifacts while maintaining strict privilege boundaries between agent and user modifications:

  • Agent-Authored Additions: An executing agent may dynamically register additional stricter checks or runtime notes when encountering unexpected operational risks, provided the runbook permits dynamic check registration. These additions are logged in the per-run history for subsequent human auditing and potential promotion into future runbook versions.
  • User-Owned Invariants: Modifying, weakening, or removing existing invariants, permissions, and blocking transition checks requires a privileged policy decision. Agents cannot unilaterally weaken baseline constraints.

This shared control architecture enables runtime adaptation to emergent task conditions while preventing agents from compromising security invariants or bypassing transition contracts.

0

1

Concept icon
Updated 2026-09-23

Tags

Prep Sessions

Engineering Deterministic Runtimes and Verification for Autonomous Agents @ University of Michigan - Ann Arbor

Ch.2 Runtime Lifecycle and State Management - Engineering Deterministic Runtimes and Verification for Autonomous Agents @ University of Michigan - Ann Arbor

Per-Run State Persistence, Recovery, and Stop Hooks - Engineering Deterministic Runtimes and Verification for Autonomous Agents @ University of Michigan - Ann Arbor