Supervised process

Review and confirm queue

This is the difference from a normal chat answer: high-risk external actions collect here before anything leaves the tenant, and every decision is written to the audit trail.

Human supervised

Pending and recent decisions

Send reply to Lotte Commerce

highpending

Formal Korean reply plus 30-minute calendar invite. External recipient requires explicit approval.

Source: mail-0012h 15m

Remember public-sector security preference

mediumpending

Store preference: public-sector answers should separate deletion, audit retention, and AI-training clauses.

Source: mail-0026h

Create Thursday review event

highpending

Invite Lotte Commerce and Pion creative ops. Add Google Meet link and agenda.

Source: calendar1h 05m

Archive OAuth refresh notice

lowapproved

System notification marked read-only and archived after visible trace.

Source: mail-005done
Action registry

Risk taxonomy

Low

Read/search actions auto-proceed with visible trace.

Medium

Drafts and memory proposals require notice or consent.

High

External send, invite, submit, upload, export are blocked until approved.

Context protection

Stale approval rules

External sends expire when a related thread receives a new message, when a calendar slot is no longer available, or when a user edits the artifact outside the approval flow.

Recovered drafts remain available for 30 days unless tenant retention policy deletes them earlier.

Correction loop

Feedback capture

Email classificationlogged
Tone and honorificslogged
Summary or citationlogged
Memory suggestionlogged
PII maskinglogged