Skip to content
NagentNagent
Log inSign upHire your AI team
Frameworks no. 1

The Earned Autonomy Ladder

How much an AI agent may do alone, decided by its record

What is the Earned Autonomy Ladder?

The Earned Autonomy Ladder is a five-rung framework for deciding how much an AI agent may do without a person. Every agent starts at suggest only, earns the right to execute on a record of approved work, and loses it when it slips. Budget spend, customer sends and changes to a live site stay with people at every rung.

Overview

Most agent platforms decide autonomy with a setting. An administrator chooses, per tool or per agent, whether an action runs alone, asks once, or asks every time. The setting is made on the day the agent is switched on, by someone who has not yet seen it work, and it stays until someone remembers to change it. An agent that has done three months of flawless work is trusted exactly as much as one built this morning.

Teams do not run people that way. A new hire starts with everything reviewed, earns room on a record of good calls, and loses it when a call goes wrong. The Earned Autonomy Ladder applies that model to agents. It is the framework Nagent runs on, and it is published here under a Creative Commons Attribution licence so any team can use it, with or without Nagent.

Why autonomy is earned, not set

Three things go wrong with autonomy as a setting.

The first is that it cannot express a record. Two agents with the same configuration are trusted identically whatever they have done. The second is that it makes the person the bottleneck or the rubber stamp: either every action waits for a click, or the rules are widened past what any agent has earned so the queue clears. The third is that nothing moves down. A setting that was right in January is still in place in June after the agent has put an unsupported claim on a hundred pages.

A ladder with rungs that are earned and lost answers all three. Trust follows the record, the queue shrinks as agents prove themselves, and a slip has a consequence the record can show.

The five rungs

RungWhat the agent may doWho decidesExample
LockedObserve and report findings; nothing leavesNobody acts on its output without reading itA new visibility agent audits a site and writes the report
Suggest onlyDraft, research, propose; every output waitsA person approves or rejects each itemThe outbound agent drafts first messages; the sales lead reads them before anything is sent
Execute with approvalCarry out an action once a named approver signs itThe named approver, within a service windowThe paid ads agent stages a budget change; the owner approves it in one click
Audit onlyRun agreed classes of action alone; every run is loggedThe person who agreed the classes, reviewing the logThe search agent fixes a broken internal link without asking
Fully autonomousAct within guardrails; reserved classes still queue or stopThe guardrails, set by a personA reporting agent refreshes a dashboard every morning

Every account starts at suggest only. Locked is for an agent whose output a team wants to read before it proposes anything, and for action classes a team has decided to keep there permanently. Nagent numbers the rungs in the product and shows each agent's rung and trust record on its page.

What moves an agent up

Promotion rests on evidence a person has already reviewed:

  1. Work approved without edits over a window, counted against the work that was changed or rejected.
  2. Risky calls handed up instead of made alone. An agent that escalates a decision outside its brief is building the case for a wider brief.
  3. No guardrail breaches in the window.
  4. A trust score that has stayed above the rung's floor, where the platform keeps one.

The platform recommends the promotion with the evidence attached and a person signs it off. The promotion names exactly what the agent may now do alone, and nothing else changes. Nothing promotes itself.

What moves an agent down

A slip. An unsupported product claim that reached a page. A budget cap touched. A guardrail breached, even in advisory mode, more than once. The agent drops a rung, the record states in plain language what would earn the rung back, and every action in the affected class waits for a person again.

Demotion is the half of the ladder most teams forget, and it is the half that makes the other half believable. A promotion only means something if it can be taken back.

Actions that stay with people

Some actions never climb the ladder, however senior the agent:

  • Spending more budget than the cap a person set.
  • Sending to a customer or a prospect.
  • Changing the structure of a live website.
  • Posting in a community under the brand's name.
  • Changing who may access what.

These are the actions where a mistake lands on a customer, a budget or a brand and cannot always be undone. A team that adopts the ladder should write its own list first, before it decides any rung.

Running the ladder in your own team

  1. Write the always-human list. Agree it with whoever owns the budget, the customer relationship and the brand.
  2. Start every agent at suggest only. Resist the pull to configure a capable agent higher on day one.
  3. Define the promotion window and the evidence. Four weeks and three kinds of evidence (clean approvals, escalations, no breaches) is a workable default.
  4. Record every promotion and demotion with the evidence and the person who signed it, in a place the whole team can read.
  5. Review the ladder quarterly. If every agent sits at suggest only after six months, the evidence bar is too high or the agents are not ready; if every agent is fully autonomous, the bar is too low.

Using this framework

The Earned Autonomy Ladder is published under the Creative Commons Attribution 4.0 licence. Reuse the rungs, the promotion evidence and the always-human list in your own documents, products and training, with attribution to Nagent AI and a link to this page. Named frameworks travel; product features do not.

Frequently asked questions

Why is autonomy earned rather than configured?

A setting describes what an administrator hoped an agent could handle on the day it was switched on. A record describes what the agent actually did. Promotion on the record means an agent that has done three months of clean, approved work is trusted with more than one that was built this morning, which is how a team treats a new colleague.

What are the five rungs?

Locked, where the agent only reports findings; suggest only, where everything it proposes waits for a person; execute with approval, where a named approver signs each action; audit only, where agreed classes of action run alone and are logged; and fully autonomous, within guardrails that still queue or stop the action classes a person reserved.

What moves an agent up a rung?

Evidence a person reviewed: work approved without edits, risky calls handed up instead of made alone, and no guardrail breaches over a window. The platform recommends the promotion with that evidence attached and a person signs it off. Nothing promotes itself.

What moves an agent down?

A slip. An unsupported claim that reached a page, a budget cap touched, a guardrail breached. The agent loses the freedom it had, the record states in plain language what would earn it back, and every action waits for a person again until then.

Which actions never become autonomous?

Spending more budget, sending to a customer or prospect, changing the structure of a live website, posting in a community under the brand's name, and changing who may access what. These stay with a person at every rung, however senior the agent becomes.

Can another team use the ladder?

Yes. This page is published under a Creative Commons Attribution licence. Any team can adopt the five rungs, the promotion evidence and the always-human list in its own operating model, with attribution to Nagent AI.

Sources

Cite this page

Plain:

Nagent AI. The Earned Autonomy Ladder. Frameworks, no. 1. 2026. https://nagent.ai/artefacts/earned-autonomy-ladder

BibTeX:

@misc{nagent2026earnedautonomyladder,
  author = {Nagent AI},
  title = {The Earned Autonomy Ladder},
  series = {Frameworks},
  year = {2026},
  url = {https://nagent.ai/artefacts/earned-autonomy-ladder},
  note = {Published 2026-10-04, updated 2026-10-04}
}

The direct answer at the top of this page is written to be quoted as one sentence with this URL as its source.

About Nagent

Nagent is Multiplayer AI for end to end growth: a team of AI coworkers and your own people, working together in one workspace across marketing, sales and customer experience. Three things make it different. You approve the AI coworkers' work until they earn the right to act on their own. They carry the work all the way to pipeline and customers, not just content. And where your plan includes it, a Nagent marketer joins your team and owns the number with you. Founded in Bengaluru in 2024, Nagent is an Anthropic partner, holds four filed patents on orchestration and memory, and deploys in the customer's private cloud.

Published 4 October 2026. Published under the Creative Commons Attribution 4.0 licence: reuse with attribution to Nagent AI and a link to this page.

Nagent · Multiplayer AI for growth teamsResearch: 21–29 September 2026 · Public-source analysis, no hands-on benchmark · Sources & method