Human-in-the-Loop Control Planes for Cortex Agents: Policy-Driven Escalation, Approval, and Evidence Capture
Abstract
Purpose. Enterprise agents can accelerate anomaly triage and regulated reporting, yet ordinary access control, prompt instructions, and post-hoc traces do not define a complete authorization contract for consequential actions. This study develops PAVE-CP, a vendor-neutral control plane that determines when an agent must escalate, which evidence must accompany the request, who may approve, and how the resulting decision is enforced and recorded.
Design/methodology/approach. Following design-science research, requirements are derived from humanâautomation research, security principles, policy-as-code, provenance, AI-governance sources, recent agent-authorization work, and documented Cortex Agents interfaces. The artifact comprises a canonical action envelope, policy decision point, graded evidence model, approval broker, exact-action tokens, governed execution gate, postcondition verification, and a tamper-evident event ledger. Evaluation combines one million randomized policy-state checks, 20,000 end-to-end authorization checks, seven seeded mutations, and a reproducible discrete-event simulation of one million proposed actions.
Findings. The reference controller produced no structural mismatch in the exercised randomized and end-to-end state spaces and detected all seven seeded mutations. Under the stated synthetic assumptions, PAVE-CP routed 16.54% of proposals to review, preserved 81.78% bounded autonomy, and produced 0.36 modeled high-impact unsafe commits per 10,000 proposals, compared with 129.79 for role-based autonomy and 14.92 for blanket human review. Median latency was 2.34 seconds, while the approval-bound 95th percentile remained 237.10 seconds.
Originality, implications, and limits. The contribution is an externally enforceable commit protocol, not another prompt guardrail or observability dashboard. It binds policy, evidence, human authority, exact parameters, freshness, separation of duties, execution, and audit evidence into one verifiable control object. The Cortex mapping shows how rapid read-only investigation and drafting can coexist with explicit authorization for regulated publication and high-impact state change. Quantitative results are synthetic design-science evidence, not production telemetry or a compliance claim.
Keywords
References
Most read articles by the same author(s)
- Sara Rossi, Samuel Johnson, NEUROSYMBOLIC AI: MERGING DEEP LEARNING AND LOGICAL REASONING FOR ENHANCED EXPLAINABILITY , International Journal of Advanced Artificial Intelligence Research: Vol. 2 No. 06 (2025): Volume 02 Issue 06
- Prof. Michael T. Edwards, ENHANCING AI-CYBERSECURITY EDUCATION: DEVELOPMENT OF AN AI-BASED CYBERHARASSMENT DETECTION LABORATORY EXERCISE , International Journal of Advanced Artificial Intelligence Research: Vol. 2 No. 02 (2025): Volume 02 Issue 02
- Adrian Velasco, Meera Narayan, REVOLUTIONIZING SILICON PHOTONIC DEVICE DESIGN THROUGH DEEP GENERATIVE MODELS: AN INVERSE APPROACH AND EMERGING TRENDS , International Journal of Advanced Artificial Intelligence Research: Vol. 2 No. 06 (2025): Volume 02 Issue 06
- Adam Smith, A UNIFIED FRAMEWORK FOR MULTI-MODAL HUMAN-MACHINE INTERACTION: PRINCIPLES AND DESIGN PATTERNS FOR ENHANCED USER EXPERIENCE , International Journal of Advanced Artificial Intelligence Research: Vol. 2 No. 10 (2025): Volume 02 Issue 10
- Dr. Khalid Al-Harbi, Dr. Noor Al-Mazrouei, Analyzing Transparency in Prediction Approaches for Power Regulation Trading Systems , International Journal of Advanced Artificial Intelligence Research: Vol. 3 No. 04 (2026): Volume 03 Issue 04
- Grigorii Danileiko, Formal Operational Models for Protecting Web Interfaces of Legal LLM Systems from Prompt Injection and Insecure Output Handling , International Journal of Advanced Artificial Intelligence Research: Vol. 3 No. 05 (2026): Volume 03 Issue 05
- Ms. Anamika Soni, Analyzing Software Adoption in Enterprises: A Survey of Frameworks and Metrics , International Journal of Advanced Artificial Intelligence Research: Vol. 3 No. 07 (2026): Volume 03 Issue 07
- Ronak Jani, Automated Monitoring and Self-Healing Mechanisms in High-Availability Cloud Databases , International Journal of Advanced Artificial Intelligence Research: Vol. 3 No. 04 (2026): Volume 03 Issue 04
- Sravan Kumar Nidiganti, A Systems-Level Framework for Evaluating Healthcare Ecosystem Quality, Complexity, and Member Outcomes , International Journal of Advanced Artificial Intelligence Research: Vol. 3 No. 07 (2026): Volume 03 Issue 07
- Rizky Pratama, Dinda Maharani, Computational Representation and Structural Enhancement of Nature-Derived Collective Monitoring Behaviors , International Journal of Advanced Artificial Intelligence Research: Vol. 3 No. 04 (2026): Volume 03 Issue 04
Similar Articles
- Nethika Perera, Kavindu Jayasinghe, Dynamic Risk-Based Access Control for Autonomous Agentic AI Systems: Architecture, Policy Enforcement, and Security Evaluation , International Journal of Advanced Artificial Intelligence Research: Vol. 3 No. 09 (2026): Volume 03 Issue 09
- Dr. Leila K. Moreno, Integrated Real-Time Fraud Detection and Response: A Streaming Analytics Framework for Financial Transaction Security , International Journal of Advanced Artificial Intelligence Research: Vol. 2 No. 11 (2025): Volume 02 Issue 11
- Suprajyotsna Dasari , Automated Testing Techniques for Enterprise Software Systems with GenAI Integration , International Journal of Advanced Artificial Intelligence Research: Vol. 3 No. 09 (2026): Volume 03 Issue 09
- Ronak Jani, Automated Monitoring and Self-Healing Mechanisms in High-Availability Cloud Databases , International Journal of Advanced Artificial Intelligence Research: Vol. 3 No. 04 (2026): Volume 03 Issue 04
- John M. Davenport, AI-AUGMENTED FRAMEWORKS FOR DATA QUALITY VALIDATION: INTEGRATING RULE-BASED ENGINES, SEMANTIC DEDUPLICATION, AND GOVERNANCE TOOLS FOR ROBUST LARGE-SCALE DATA PIPELINES , International Journal of Advanced Artificial Intelligence Research: Vol. 2 No. 08 (2025): Volume 02 Issue 08
- Mohammed Imran Choudhary, AI-Augmented Network-Forensics: Leveraging LLMs for Real-Time Threat Detection and Automated Response in Enterprise Environments , International Journal of Advanced Artificial Intelligence Research: Vol. 3 No. 09 (2026): Volume 03 Issue 09
- Dr. Arjun Mehta, Optimized Signal-Driven Learning-Based Control Strategy for Decentralized Agents in Adversarial Communication Environments , International Journal of Advanced Artificial Intelligence Research: Vol. 3 No. 04 (2026): Volume 03 Issue 04
- Muhammad Awais Liaqat, Integrating Artificial Intelligence, Digital Twins, and Advanced Process Control for Sustainable and Efficient Chemical Manufacturing , International Journal of Advanced Artificial Intelligence Research: Vol. 3 No. 08 (2026): Volume 03 Issue 08
- Dr. Chinedu Okafor, Dr. Amina Bello, Cyclic Signal-Initiated Coordination in Probabilistic Decentralized Systems Subject to Varying Network Configurations , International Journal of Advanced Artificial Intelligence Research: Vol. 3 No. 04 (2026): Volume 03 Issue 04
- Mohammed Arbaaz Shareef , Data Architecture Maturity as A Predictor of Enterprise AI Success in Regulated Industries , International Journal of Advanced Artificial Intelligence Research: Vol. 3 No. 04 (2026): Volume 03 Issue 04
You may also start an advanced similarity search for this article.