The Authorizing Party
Every consequential action taken by a machine has a party who authorized it, named before the action, not assembled after it. Where actions combine into a consequential whole, that whole has one too.
Somebody said yes. The purpose of this article is to make that somebody findable at the moment of the action rather than reconstructed weeks later under pressure from a lawyer. The test is simple and it is a timing test: did the name exist before, or was it produced after the complaint? Attribution assembled after the fact is not authorization, it is blame allocation, and the two get confused constantly. A system that cannot name its authorizing party at the moment it acts is not a system with a paperwork gap. It is a system that was never authorized.
The second sentence closes a gap the first one leaves open. Harm at scale rarely arrives as a single bad decision. It arrives as ten thousand ordinary ones, each defensible on its own, which together amount to something nobody authorized and nobody would have. Every individual action passing its own check is not evidence that the pattern passed anything. If the aggregate is consequential, the aggregate needs a name attached to it, and somebody has to have looked at the whole before it became the whole.