ctrlrun.PendingApproval — class, defined at src/ctrlrun/adapter.py:92
agent and user, the action_hash and the request’s expiry. It does not
carry the Action, the Control, the store or the executor — nothing an adapter could act
on rather than display.
agent and user are outputs. They are here so a human sees who is asking, and there is
no constructor, keyword or callback anywhere on this surface that puts one back in (§4.2).