# Architecture Decision Record: Agentic Control Plane

- ADR ID:
- Status: proposed | accepted | superseded | retired
- Date:
- Decision owners:
- Related system IDs:
- Review trigger / date:

## Context
- Workflow and business decision:
- Organizational scope:
- Risk and consequence:
- Existing platforms and constraints:
- Required evidence and service levels:

## Required control capabilities
- Identity and least agency:
- Model, data, and tool policy:
- Orchestration and state:
- Human authority:
- Evaluation and release:
- Observability and evidence:
- Budget and cost attribution:
- Incident containment and shutdown:
- Portability and exit:

## Alternatives considered
### Alternative A
- Description:
- Strengths:
- Weaknesses:
- Evidence:

### Alternative B
- Description:
- Strengths:
- Weaknesses:
- Evidence:

### Alternative C / no new platform
- Description:
- Strengths:
- Weaknesses:
- Evidence:

## Decision
- Selected topology: embedded | centralized | federated | composable
- Responsibilities by component / owner:
- Policy enforcement points:
- State and evidence boundaries:
- Execution and sandbox boundaries:
- Human authority model:

## Consequences and trade-offs
- Benefits:
- Costs and operating burden:
- New failure modes:
- Vendor / platform dependencies:
- Migration impact:
- Residual risk:

## Validation and acceptance
- Representative test set:
- Architecture review:
- Security / risk review:
- Recovery and kill-switch test:
- Portability / export test:
- Approval:

## Conditions requiring reconsideration
- Material workflow or consequence change:
- New data or tool access:
- Model / orchestrator / provider change:
- Incident or threshold breach:
- Regulatory / contractual change:
- Cost or service-level breach:
