Receiver-side action assurance

Decide whether to accept anexternal AI-agent action,and preserve evidence you can replay.

First Instinct evaluates high-responsibility requests initiated outside the receiving organisation’s trust domain. Start in Shadow Mode, apply your own policy, and preserve a source-attributed record of what happened next.

External refund request
Evidence received
Receiver Policy
require-human-approval
Target: accepted_for_processing
Shadow Mode · no production action changed
Acceptance Evaluation Recordrequire-human-approval
actioncreate_refund_request
requesterexternal_agent
evaluationrequire-human-approval
reason_codesSPONSOR_UNVERIFIED, MANDATE_SCOPE_UNVERIFIED
target_statusaccepted_for_processing

This request would have been denied or escalated under the proposed receiver policy. No production action changed.

Why receivers need a separate decision

Authentication is not acceptance.

Identity providers, agent runtimes, payment networks and carriers can each sign limited facts. None of them decides whether your organisation should accept a specific external action under your own responsibility and policy.

How it works

Observe, evaluate, compare, preserve.

01
Observe

Receive an external action and the evidence already available to the customer.

02
Evaluate

Apply receiver-owned policy without changing production behaviour.

03
Compare

Record whether the action would be allowed, denied, escalated or remain indeterminate.

04
Preserve

Keep a source-attributed evaluation record and verify the Target's separately issued outcome.

Four evaluation states

Every evaluation resolves to one of four states.

indeterminate is not a system error. It means the evidence is insufficient, a status cannot be confirmed, or a binding cannot be verified.

allow

Evidence and policy conditions are met; the action may be accepted.

deny

Policy conditions are not met; the action should not be accepted.

require-human-approval

The action needs a human decision before it can be accepted.

indeterminate

Not an error. Evidence is insufficient, a status cannot be confirmed, or a binding cannot be verified.

Result separation

Three parties, three separately attributed results.

Platform / IdP / carrier / payment rail

Signs limited source facts.

First Instinct

Produces a receiver-side evaluation under your policy.

Target system

Signs what it actually accepted or completed.

accepted_for_processing · completed · failed · reversed

First Instinct verifies Target Receipts. It does not sign the Target’s business outcome.

Shadow Mode

See the exposure before changing production.

Run First Instinct beside an existing workflow. Shadow Mode does not block, approve or execute requests. It records how the same requests would be classified under the proposed receiver policy.

  • Observed actions
  • Evidence completeness
  • Indeterminate rate
  • Proposed escalations
  • Missing Sponsor or mandate bindings
  • Target Receipt coverage

Shadow-to-Enforcement conversion begins when the receiver considers the counterfactual exposure actionable.

Scenarios

Twenty-eight high-responsibility actions a receiver has to weigh

See all scenarios
Private beta

Start in Shadow Mode.

We’re onboarding a small number of banks, PSPs, marketplaces and API providers who receive high-responsibility actions from external agents.

Shadow Mode does not block, approve or execute requests. No production action is changed during evaluation.