Transom

Human-in-the-loop (HITL)

Also called: HITL, human approval, human oversight

Requiring a person to review and approve an agent's high-impact actions before they execute.

A checkpoint on actions that are irreversible, costly, or outward-facing: sending, publishing, deleting, paying, granting access. The agent proposes; the human confirms with enough context to judge. MCP's design assumes this for tool calls.

Why it matters

It is a strong defense that degrades badly. Done well — rare prompts, clear stakes, dangerous requests visually distinct — it catches the exfiltration attempt a filter missed. Done poorly — constant identical dialogs — it trains users to approve everything and provides only the appearance of oversight (see consent phishing). The quality of the UX is the control.

Exposure map

Live counts of instances showing this pattern will appear here once the exposure map is collecting data.

Related terms

Added 2026-09-02. Last reviewed 2026-09-02. Definitions in this space are evolving; entries are dated so revisions stay legible.