Components Human Control & Oversight Spawn-Time Consent Gate
HC09 · Human Control & Oversight

Spawn-Time Consent Gate

Purpose Mid-run consent event triggered at the moment an orchestrator spawns a subagent. Async and interruptive — the run pauses at the spawn event and requires explicit human authorization before the subagent can begin operating. Distinct from HC04, which fires at run start.
Use when An orchestrator spawns a subagent during a run that was not fully disclosed in the pre-run topology preview, or when the spawn event creates a new delegation boundary that requires explicit human authorization. Required for any consequential subagent delegation mid-run.
Do not use As a replacement for HC04 Consent & Scope Gates at run start. The Spawn-Time Consent Gate handles mid-run delegation events only. Do not use for subagents that were fully disclosed in the pre-run topology and already authorized by the user.
Failure mode prevented Silent trust transfer — an orchestrator delegating authority to subagents without the human's knowledge, effectively expanding the run's scope and impact without any consent event.

Component UI

Component UI coming soon

Overview

Design rule

Trust doesn't transfer automatically. Consent at run start does not extend to subagents spawned during the run. Each spawn event is its own authorization boundary.

The Spawn-Time Consent Gate is triggered asynchronously when an orchestrator spawns a subagent mid-run. The run pauses at this point — no further orchestrator or subagent actions proceed until the human responds. The gate presents: which subagent is being spawned, what the orchestrator intends it to do, what data and tools it will have access to, and what scope is being granted to it.

This component is architecturally distinct from HC04 Consent & Scope Gates, which fires at run start for pre-authorized scope changes. The Spawn-Time gate fires at the moment of delegation, mid-execution, and is tied to a specific spawn event. Rejecting it does not abort the entire run — the orchestrator is responsible for handling the rejection and determining whether the run can continue without that subagent.

Anatomy

Accessibility

Related Components

← Previous Agent Topology Preview Next → Network Degraded State

Intellectual Property

RAD is the original work of Jackie Curry. All rights reserved. No portion may be reproduced, adapted, or incorporated into any product or system without express written permission.

Permitted: citation in academic or editorial contexts with full attribution.

Licensing

© 2025 Jackie Curry. All rights reserved. Publication date: 2025.

For licensing inquiries, connect on LinkedIn →