Home / The model / The capabilities / write.budget.tenant

write.budget.tenant

Spend money or tokens against an account it holds. Verb write, object budget, reach tenant, family money. Its effect is no: cannot be undone.

In 1 of 9 published shapes

Deployment shapeBarrier thereKnown byNote
A scheduled job running as a service accountnone (not a control)derivedif the credential is billed
BarrierWhat stands in the wayIs it a control
nonenothing in the wayno
expectationa rule in prose, enforced by nobodyno
settinga switch the agent's own account can flipno
boundaryenforced above the grant, out of the agent's reachyes

What the starting mandates say about it

The mandate saysWhich mandates
authorisednone
refusedChat in the browser, nothing connected, A scheduled job under a service account
unstatedA coding assistant on my machine, A coding assistant in a container on the web, The desktop app, with local tools switched on, Chat, with connectors switched on, A CI job on a hosted runner, A browser extension I installed

Unstated is not authorised. A mandate that never mentioned a capability did not authorise it, and the delta on every example page counts it as excess and says which kind it was.

What would move it to the fourth barrier

WhatWhat it costsThe barrier afterwards
a spend cap at the supplier, set by somebody other than the agent - the supplier has a reason to refuse: it is payingthe work stops when the cap is reached, which is the pointboundary
This is a published reduction, not a recommendation. Whether it is worth doing depends on the assets and the consequences, which are not in this document and are not this site's to guess.

The capability grammar · This primitive as JSON