Human-only decisions
Material product claims, pricing and legal changes, production deployment, destructive changes, merchant payments, ad spend, external publishing, and account mutations require explicit approval. A coordinator or specialist agent cannot approve its own protected transition.
External platform rules
Shipsite does not bypass account login, CAPTCHA, ownership verification, community rules, provider policy review, or paid checkout. It can prepare the submission pack and verify a public proof URL after the human action.
Secrets and least privilege
Credentials are scoped to the smallest practical workspace, project, account, repository, or zone boundary; stored encrypted; and displayed only as status or masked evidence. Connection failure does not silently downgrade a protected action into an unverified success.
Receipts over promises
A deploy needs a version and endpoint check; a search submission needs a provider receipt; a payment needs a verified webhook; a distribution result needs a public proof URL. If evidence is partial or unavailable, the UI should say so.