# Tool Permission Matrix Toolkit schema: `PAISEH-TK-1.0` Source artifact: Chapter 7 **Tool Permission Matrix** Complete `../common-artifact-header.md` first. Define who or what may request, approve, execute, reconcile, and verify each effect. ## 1. Permission Matrix | Tool/action | Represented principal | Allowed operation/parameter bounds | Explicit deny/data scope | Approval binding/expiry | Effect identity/idempotency | Partial/unknown outcome | Cancel/compensate/reconcile | Receipt/owner | | --- | --- | --- | --- | --- | --- | --- | --- | --- | | | | | | | | | | | ## 2. Authority and Delegation - Workflow authority source: - Principal and tenant/domain binding: - Authority that may be delegated: - Authority that must never be delegated or expanded: - Approval evidence, snapshot, scope, state version, and expiry: - Human override and emergency path: ## 3. Pre-Action Revalidation - Identity and current-state checks: - Eligibility and parameter checks: - Approval and policy checks: - Cancellation and supersession checks: - Effect-existence check: - Denied or indeterminate behavior: ## 4. Durable and Long-Running Work - Workflow, action, attempt, effect, and receipt identities: - States and authoritative store: - Lease, heartbeat, checkpoint, takeover, and cancellation rules: - Retry rule based on effect knowledge: - Terminal ownership and reconciliation cadence: ## 5. Failure and Recovery - Timeout and transport-failure behavior: - Partial-success behavior: - Unknown-outcome behavior: - Compensation or correction path and limits: - Irreversible effects and consequence ceiling: - Required audit events and authoritative receipts: - Exception authority, expiry, local checks, and reopening events: