LA.001How it works
LA.001How it works

How a task lives, from the way in to the receipt.

People make four decisions: what to do, whether the plan is right, whether the result is right, and whether it goes live. Everything between those four moments is a machine's job, and the machine can't hold keys, can't spend past its permission slip, and writes down every attempt, including the refusals.

LA.002The spine
LA.002The spine

Seven stages. Four human decisions. One record underneath.

Solid cards are in use. Dashed in ink is built and not switched on. Dashed in grey is not built. The diagram draws the weaker claim wherever built and running disagree.

THE SPINE · HOW A TASK LIVESseven stages · you decide four times · machines do everything betweenPLANNED · THE RECAP IS WHAT THE NEXT PLAN READS01 · WAYS INfour doors, and every one of them makes the same thingLEAVES: A TASKASKyouYou askA task, in your own wordsCLOCKa scheduleA scheduleNightly checks, weeklyreportsSIGNALinboundA signalA form, a webhook, athresholdNOTEbuilt · offA commentOn a page, a doc, a video02 · THE TASKone record — and it may not exist without an organisationLEAVES: OWNER · ORGANISATION · SKILLTASKone recordA task appearsIts skill, inputs, ownerand evidenceORGruled · plannedOne organisationRuns refuse a blank one;tasks have no such field03 · THE PLANa cheap pass drafts it, and you say yes onceLEAVES: A PROPOSAL ON THE TASKPLANbuilt · offA planning passDrafts the scope, theworkflow and the budgetPASTbuilt · offIt reads the pastThe reader is built; norecap exists yetGATE1built · offGate 1 — the planNo threshold ruled; everyplan comes to you04 · THE RUNhired one worker per job, capped, and checked as it goesLEAVES: RUN AND JOB ROWSDISPbuilt · offThe dispatcherHires a worker per job.No standing AI in chargeWORKbuilt · offHeadless workersHard caps on time, countand budgetCHECKbuilt · offChecker jobsPart of the workflow, notan afterthoughtJUDGEbuilt · offA screenshot judgeBefore and after. Threetries, then a person05 · YOUR DESKthe second of your four decisions, on the exact versionLEAVES: ONE APPROVAL, BOUND TO A VERSIONPREVbuilt · offA working previewVisual work cannot reachyou without oneGATE2your callGate 2 — the resultBound to the fingerprinton the cardROOMbuilt · offThe review roomLook and discusstogether, clients invitedAPPRone recordOne approvals rowNever two places thatseparately approve06 · IT ACTStyped, allowlisted, fail-closed — and never holding a keyLEAVES: AN EXECUTION RECEIPTACTtypedA typed actionAllowlisted, with asnapshot firstTENfail-closedTen checks firstAny one of them refuses,with its reasonKEYScustodyThe key stays putThe teller does the deal,not the agent07 · AFTERthe action's receipt is automatic; the run's ledger is not applied yetLEAVES: AUDIT ROWS, REFUSALS INCLUDEDRCPTautomaticReceipt and auditWhat ran, what ittouched, what it refusedRECAPbuilt · offA plain recapIts door is written; norun has produced oneDOCSbuilt · offFiled in DocsUnder the client, linkedfrom the taskONE EXECUTION AUTHORITY · THE PLATFORM OWNS RUNS, JOBS, LEASES, GRANTS AND GATESSOLID = IN USE · DASHED IN INK = BUILT AND NOT SWITCHED ON · DASHED IN GREY = NOT BUILTONE GATE HOLDS EVERY DASH BELOW STAGE TWO — THE WORKFLOW SCHEMA IS APPLIED TO NO DATABASE · RE-MEASURED 2026-08-28
01 · WAYS IN · four doors, and every one of them makes the same thing · leaves: a task
  • You askA task, in your own words
  • A scheduleNightly checks, weekly reports
  • A signalA form, a webhook, a threshold
  • A comment · built, not switched onOn a page, a doc, a video
02 · THE TASK · one record — and it may not exist without an organisation · leaves: owner · organisation · skill
  • A task appearsIts skill, inputs, owner and evidence
  • One organisation · plannedRuns refuse a blank one; tasks have no such field
03 · THE PLAN · a cheap pass drafts it, and you say yes once · leaves: a proposal on the task
  • A planning pass · built, not switched onDrafts the scope, the workflow and the budget
  • It reads the past · built, not switched onThe reader is built; no recap exists yet
  • Gate 1 — the plan · built, not switched onNo threshold ruled; every plan comes to you
04 · THE RUN · hired one worker per job, capped, and checked as it goes · leaves: run and job rows
  • The dispatcher · built, not switched onHires a worker per job. No standing AI in charge
  • Headless workers · built, not switched onHard caps on time, count and budget
  • Checker jobs · built, not switched onPart of the workflow, not an afterthought
  • A screenshot judge · built, not switched onBefore and after. Three tries, then a person
05 · YOUR DESK · the second of your four decisions, on the exact version · leaves: one approval, bound to a version
  • A working preview · built, not switched onVisual work cannot reach you without one
  • Gate 2 — the resultBound to the fingerprint on the card
  • The review room · built, not switched onLook and discuss together, clients invited
  • One approvals rowNever two places that separately approve
06 · IT ACTS · typed, allowlisted, fail-closed — and never holding a key · leaves: an execution receipt
  • A typed actionAllowlisted, with a snapshot first
  • Ten checks firstAny one of them refuses, with its reason
  • The key stays putThe teller does the deal, not the agent
07 · AFTER · the action's receipt is automatic; the run's ledger is not applied yet · leaves: audit rows, refusals included
  • Receipt and auditWhat ran, what it touched, what it refused
  • A plain recap · built, not switched onIts door is written; no run has produced one
  • Filed in Docs · built, not switched onUnder the client, linked from the task
The spine: how one task lives, in seven stages down the page. Re-measured 28 August 2026.
  1. 01

    Ways in

    Four doors, and every one of them makes the same thing: a task.

    You ask. A schedule fires. A signal arrives (a form, a webhook, a threshold). Or a comment on a page starts work, which is built and dark.

  2. 02

    The task

    One record, and it can't exist without an organisation.

    The task carries its owner, its organisation and the skills a run may use. Internal work picks the agency. Nothing runs against nobody.

  3. 03

    The plan

    A cheap pass drafts it, and you say yes once.

    A cheap model reads the client's past recaps and connections and proposes scope, a job workflow and a token budget. Gate 1 approves the plan. It's skipped for low-stakes work, so nobody taps twice for trivia.

  4. 04

    The run

    One worker hired per job, capped, and checked as it goes.

    A boring background program, the dispatcher, hires a headless worker for each job. No standing AI orchestrator. Hard caps on time, concurrency and budget. Checker jobs are part of the workflow, and visual changes get a screenshot judge.

  5. 05

    Your desk

    The second of your four decisions, on the exact version.

    Visual work can't reach the desk without a working preview link. The looking and discussing happens in the review room. The decision lands on one approvals record, bound to a fingerprint. Edit the payload and the approval dies.

  6. 06

    It acts

    Typed, allowlisted, fail-closed, and never holding a key.

    Ten checks stand in front of every action. The broker turns a signed, short-lived grant into one scoped call. The agent never sees the key.

  7. 07

    After

    The receipt is automatic. The recap is the memory.

    Events, audit rows and refusals are written by the machine. The last job of every workflow writes a plain-language recap into Docs under the client: what was asked, done, decided and learned. The next plan reads it.

Done is done. A person ticking a task done cancels the run: spend stops, the run settles as cancelled by a person. Cancelling never un-publishes. Undo is its own deliberate act.

Two sentences on this page look like they contradict each other, and they don't. The approval chain (task → staged artefact → gate on an exact version → executed action → receipt) has fired end to end once, on a real website change. The run chain of stage 04 (a job claimed off a queue, worked, settled back into the ledger) has never travelled all the way through. The schema for it is applied. The driver is the build.

LA.003The four decisions
LA.003The four decisions

Your desk is a review queue, not an inbox.

01

What to do

You create the task, or route the signal that becomes one. Everything downstream inherits its organisation and its owner.

02

Whether the plan is right

Gate 1. One yes on the proposed scope, workflow and budget. Skipped when the stakes are low, because routing it is the approval.

03

Whether the result is right

Gate 2. Bound to the exact version on the card. The review room is where you look; the approvals record is where you decide.

04

Whether it goes live

Reversible actions publish behind a pull request or a staged version. Fixed actions, the ones that spend money or can't be undone, are recommendations. A human executes them.

LA.004The operations key
LA.004The operations key

Sixteen marks, drawn by hand, and every diagram uses them.

What kind of work a node is, who made the thing it holds, how hard that thing is to take back, and what the run is doing at this step. One ink per mark. A stipple is the same ink at reduced coverage, never a second colour.

Structure · What a node is.

Job

One bounded step with one owner and one typed output. Not a persona.

Arrow

A real dependency. The next job genuinely needs something from the last.

Gate

A named human decision on an exact version, required before anything continues.

Fixed

An action a human executes personally, because it spends money or can't be undone.

Run

One execution of a graph, for one task. A stair: discrete steps, one direction.

Human

A person entering the graph. A request, a comment, a signal that starts work.

Provenance · Who or what made the thing a job is holding.

Written by a person

Brand voice, pillars, do and don't-say. The run reads it and never edits it.

Made by a system

Ads, GA4, Search Console, the raw schemas, the record every job reads and writes.

Made by an agent

Research, a draft, a page, a recommendation. Not live until someone signs for it.

Temperature · How hard it is to take back. One footprint, three weights.

T1 · transitory

Runs and chains freely. Throw it away and make it again.

T2 · reversible

Staged, then approved. It can go live and be pulled back.

T3 · durable

It leaves the system and stands: a report someone acts on, a record.

Action · What the run is doing at this step.

Verify

A checker that wrote none of it. The sceptic is a job, not a mood.

Loop

A revision cycle. At most two, then a human with the screenshots.

Fan out

Independent jobs run at the same time against one run.

Memory

What this run learned, filed for the next one to read.

LA.005The permission ladder
LA.005The permission ladder

Every connection climbs four rungs. Most never reach the top.

01

Observe

Health only. Is the connection alive.

02

Read

Bounded client data, scoped to one client, revocable in minutes.

03

Draft

Prepare, don't publish. A paused campaign, a staged container version, a pull request.

04

Execute

The executor only. Exact approved action, immutable receipt.

LA.006Designing a workflow
LA.006Designing a workflow

Seven steps, and the question each one asks.

  1. 01

    Choose one outcome worth paying for

    What useful change should exist when this run is finished?

  2. 02

    Shadow the human before automating

    What would a careful person actually do, and what do they notice that the written process misses?

  3. 03

    Define the shared state

    What must the next job know, and which exact version must it rely on? Unknown, stale and refused are honest states.

  4. 04

    Map jobs and real dependencies

    Does the next job genuinely need this output, or are we waiting because the old process was linear?

  5. 05

    Attach skills, models and connections

    What specialised method does this job need, and what is the least authority it requires?

  6. 06

    Add tests, tripwires and human gates

    How could this look successful while being wrong, unsafe or irrelevant?

  7. 07

    Run manually, learn, then increase autonomy

    What did this run teach that should make the next one safer, faster or clearer?

LA.007Proving it works
LA.007Proving it works

An agent output can be plausible, well-written and completely wrong.

01

Contract

Inputs, outputs, versions, required fields.

02

Logic

Calculations, ordering, stop rules, invariants.

03

Permission

The allowed identity succeeds. The denied identity fails. Both, every time.

04

Experience

A real browser, a real route, visible state and controls.

05

Shadow run

Compare against a human before granting execution.

LA.008The first gated run
LA.008The first gated run

Fix a spelling mistake. Five skills, one gate, one afternoon.

A comment on a page says a word in the services section should be spelt the Australian way. This is the deliberately boring task the platform holds itself to for its first end-to-end run.

SkillTierReadsProduces
find-the-componentT1Comment, page URL, repoThe one component and line the comment points at
copy-not-code-checkT1 · scepticThe matched lines, brand vocabularyWhich string is safe to change, and what to leave alone
propose-copy-changeT1 → T2 at mergeThe one approved stringPull request, one commit
prove-nothing-brokeT1 · probePull requestBuild result and visual diff evidence
close-the-threadT1Deploy receiptDrafted reply, sent by a human