Each mode, spelled out
Entry criteria, division of labor, and the KPI gate that promotes to the next rung.
1
Shadow
Observation only
Entry criteria
Role blueprint approved; AI counterpart provisioned with read-only access.
What the AI does
Mirrors every decision the human makes; records its own preferred action and reasoning.
What the human does
Works normally; periodically reviews the AI's shadow log and flags disagreements.
Promotion gate → Advisor
Agreement rate ≥ 85% over 100 tasks & zero high-severity disagreements.
2
Advisor
AI suggests, human decides
Entry criteria
Shadow promotion passed; Advisor rubric certified by supervisor.
What the AI does
Surfaces ranked suggestions inline with the human's workflow; explains top pick.
What the human does
Accepts, edits, or rejects suggestions. Rejections become training feedback.
Promotion gate → Copilot
Acceptance rate ≥ 70% + quality rubric pass for 200 tasks.
3
Copilot
AI drafts, human reviews
Entry criteria
Advisor gate passed; knowledge pack versioned and signed.
What the AI does
Produces full drafts end-to-end. Completes forms, writes responses, proposes dispositions.
What the human does
Reviews and submits. Override rate is measured per task class.
Promotion gate → ControlledAction
Override rate ≤ 10% over 500 tasks; task class scoped to the policy envelope.
4
ControlledAction
AI acts with per-action approval
Entry criteria
Copilot gate passed; ai_ops has signed off on action-class scope.
What the AI does
Executes in-scope actions (API calls, writes, notifications). Each call logs a pre-action record.
What the human does
Approves or blocks each action via the pair console or policy auto-approval.
Promotion gate → Autonomy
Approval rate ≥ 95% + incident rate < 0.5% over 1,000 actions.
5
GuardrailedAutonomy
Policy envelope enforces
Entry criteria
ControlledAction gate passed; org_admin countersignature on envelope.
What the AI does
Executes without per-call approval inside the envelope; cost, rate, and risk caps enforce.
What the human does
Reviews exception queue only; handles out-of-envelope or high-risk escalations.
Promotion gate → next envelope
Quarterly recertification; expanded envelope requires a full ladder pass for new actions.