Reversibility is the other half of accountability
An explanation you cannot act on is a courtesy, not a remedy. Accountability that stops at understanding stops too soon.
Most of the conversation about accountable machines has settled, almost without anyone choosing it, on a single word: explanation. We want systems that can say why. Why the loan was denied, why the claim was flagged, why the account was closed, why the application went to the bottom of the pile. The reasoning is that if a decision can be made legible, it can be held to account. And legibility is genuinely worth wanting. But it is worth noticing how much weight that one word is being asked to carry, and how little it carries on its own. Being told precisely why you were denied, with no path to undo it, is not relief. It is a more articulate version of the same wall.
This is the gap I want to take seriously. Explanation answers the question do you understand what happened to you. It does nothing for the question that actually matters to the person on the receiving end: can you do anything about it. These are different faculties, and we have spent most of our attention on the first because it is the easier one to build and the more flattering one to demonstrate. A clear explanation looks like accountability. It photographs well. But accountability that ends at understanding has stopped at the threshold of the thing the affected party came for.
The missing half is reversibility — the practical ability to unwind a decision that turns out to be wrong, and to do it before the harm compounds. Not the abstract right to appeal into a void, but a real path back to the world as it was. An explanation tells you the diagnosis. Reversibility is the treatment. A system that offers the first and withholds the second has told you, in careful detail, exactly how you are stuck.
An explanation tells you why the door is locked. Reversibility is whether anyone can still open it.
Legibility without leverage
Consider what happens when a successful challenge has nowhere to land. Someone contests an automated decision. They are right — the inputs were stale, the rule misapplied, the identity confused. The record even confirms it; the explanation holds up the error for everyone to see. And then nothing moves, because the action the decision authorized has already propagated. The funds were already swept. The flag already pushed downstream to three other systems that acted on it. The prior state already overwritten by the new one. The contestant has won the argument and lost the case, because winning the argument was never connected to anything that could be undone.
This is the quiet failure mode of accountability-as-legibility. We build records that can prove a decision was wrong and call the work finished, as if proof were the remedy. But proof is only the predicate. A finding of error that cannot be acted on is a well-documented grievance, and a grievance is not a remedy no matter how well it is documented. For the person harmed, the difference between an unexplained wrong decision and a thoroughly explained one that still cannot be reversed is mostly a matter of how much detail they get to read while nothing changes.
A record built for contest must support reversal
This has a direct consequence for what a decision record is for. We already ask a great deal of a record built for contest: that it carry the evidence actually consulted, the rules active at the time, enough state to replay the decision and watch it land in the same place. All of that supports the challenge. None of it, by itself, supports the cure. A record can let you prove the decision was wrong and still leave you no way to put the world back.
So a record that takes accountability seriously needs a second kind of preserved state. Not only enough to reconstruct the decision — the inputs, the logic, the moment — but enough to reconstruct the world as it was before the action. The balance before the sweep. The status before the flag. The relationships before the cascade. Replay tells you whether the decision was sound. Pre-state tells you where a successful challenge has to land. A Decision Receipt built only to be replayed proves the error and shrugs at it. A receipt built to be reversed knows what it would take to undo the thing — and carries enough of the prior world to make the undoing real rather than rhetorical.
This is why reversibility cannot be bolted on afterward. By the time a challenge succeeds, the information needed to reverse the action may simply not exist anymore. You cannot reconstruct a state you did not preserve. The decision to be reversible — to keep the pre-action world recoverable, to make consequential actions undoable rather than terminal — is made at the moment of action or it is not made at all. Add it later and you are not adding reversibility; you are discovering its absence.
Irreversibility is a choice in a costume
And here is the part worth saying plainly. A great many automated actions are irreversible not because the world insists on it but because the architecture was built that way. The system deletes the prior record because storage was treated as the cost and history as the waste. The action triggers a cascade of downstream effects because nothing required them to be reversible in concert. The state is overwritten in place because in-place was simpler than versioned. None of these is a law of nature. Each is an engineering decision that happened to make reversal impossible, usually without anyone weighing that as the cost it is.
That matters because irreversibility gets defended as a constraint when it is actually a choice. "We can't undo it" is frequently shorthand for "we did not build it to be undoable, and rebuilding that now is inconvenient." Those are not the same sentence, and the difference is exactly where accountability lives. A system that destroys its own capacity for reversal has not encountered a limit; it has made a decision — to put its actions beyond recall — and then dressed that decision up as the way things simply are. Some actions truly cannot be unwound. Far more are made unwindable-in-principle and irreversible-in-practice by the same architecture that found it cheaper not to look back.
This ties directly to standing. To have standing is to be a party to a decision rather than an audience for it — to hold both the right to contest and the means that make contest more than a gesture. Reversal is one of those means, and not a minor one. A contestant who can prove the decision was wrong but cannot move anything as a result has the form of standing without its substance. They can speak; they cannot act. Strip out the power of reversal and what remains is the right to be heard objecting to a thing that will happen anyway, which is the posture of an audience watching a verdict, not a party to it.
So the honest test for any system that claims to be accountable is not only whether it can explain itself. It is whether a person who is right can get the decision undone — and whether the system preserved enough of the world before it acted to make that undoing possible at all. Explanation without reversibility is a system describing the wall it has put you against in considerate, complete sentences. The other half of accountability is the part where the wall can come down.
— Dispatches · Summit Cognitive
Continue from here
Turn the argument into a practice.
Get new dispatches, assess how your organization handles consequential decisions, or explore Summit Cognitive.