Skip to content

Write path

How a change reaches the scoped shared record without parking write keys in the model host.

Actors: Actor boundaries. Shapes: Prepare proposal. Denials: Exception paths.

Forward path

StepActorInterface meaning
1. ReadAgent (legate.read)Establish current shared state before proposing
2. SimulateAgent (legate.write + consent)Dry-run / preview. No commit
3. PrepareAgentProposal payload for human or dedicated review. Does not commit
4. SignExternal signerFinal signature outside Legate and outside the model host
5. Submit signedAgentDelivers the already-signed payload to the shared-record path

If any step is denied or not ready, stop. Do not invent a signature or retry with elevated secrets in the agent host.

Lifecycle at the interface

Docs describe interface states, not an internal Arbiter state machine.

SignalMeaning for callers
SimulatedPreview only. Safe to discard
PreparedProposal exists for review. Still not committed
Signed externallySigner has applied the final signature
SubmittedSigned payload accepted for the shared-record write path
Denied / not readySee Exception paths

Maturity of each tool surface is on Integration Surfaces. Do not assume Live without checking.

Was this page clear?