The cap
A ceiling the operator may impose, and it is always safe to use.
The manual override cap sits among the decision engine's inputs and behaves as a maximum tier the operator selects. Blank means the top of the ladder — no constraint added — and any selection caps risk lower than the formulas would have produced. It enters the resolution as one more term in a minimum, alongside the gate cap and the raw core recommendation, so it can bind the outcome downward and has no mechanism for lifting it. That single directional property is what makes it structurally different from everything else discussed under the heading of overrides. Using it cannot breach a constraint, cannot stack exposure, and cannot produce a state the rest of the system needs to be warned about. Its worst case is that the account deploys less than the evidence supported, which is a cost the system is explicitly built to prefer.
| control | direction | can breach pool | log requirement |
|---|---|---|---|
| Manual override cap | lowers only | no — impossible | recorded, no reason |
| Full Tier throughput | raises exposure | yes, by design | written justification |
| Compress Risk mode | holds count | no | recorded as mode |
| Smart Capacity | default | no | recorded as mode |
The two rows differ on every property that matters. The cap participates in the ordinary resolution as one more minimum; the throughput mode acts after resolution and is the only path in the panel that can produce exposure above the authorised pool.
