The Best Decision Systems Make Vigilance Less Necessary

Peter Buck

Hatched by Peter Buck

Aug 06, 2026

11 min read

90%

0

What if the most important decisions in your life are being made before you think you have made them?

A login screen can answer that question. For decades, the password forced people to make a small decision every time they entered an account: invent a secret, remember it, protect it, and type it correctly. The system treated security as a recurring act of personal vigilance. Passkeys change the arrangement. They make the safer behavior easier, more automatic, and increasingly likely to become the default.

That shift points to a broader truth about judgment: good outcomes do not depend only on having better information or stronger willpower. They also depend on designing the surrounding system so that the right action is easy to take.

This connects two subjects that are usually kept apart. One concerns the future of digital identity. The other concerns how people and organizations should think, decide, and act under uncertainty. Together they reveal a useful principle:

The best decision systems do not merely ask people to make better choices. They reduce the number of bad choices that people must repeatedly make.

This is not an argument for removing human judgment. It is an argument for reserving human judgment for the moments when it matters most.

The hidden cost of making the same decision forever

A password appears to be a simple tool, but it imposes a large cognitive and behavioral tax. Users must create credentials that are difficult for others to guess but easy enough to recall. They must avoid reusing them, respond to warnings, recognize fraudulent requests, manage resets, and decide whether a login prompt is legitimate. Every single act seems minor. Across dozens or hundreds of accounts, the burden becomes a permanent background task.

The result is predictable. People reuse passwords. They choose memorable patterns. They ignore warnings because warnings are too frequent. They store secrets in insecure places. The problem is not primarily that individuals are careless. The problem is that the system asks ordinary people to perform security work that machines are better equipped to perform.

Passkeys represent a change in the location of responsibility. Instead of asking a person to remember and present a secret, the system uses cryptographic credentials associated with a device or account environment. The user generally confirms access through a familiar local action, such as a fingerprint, facial scan, or device passcode. The human still participates, but the human is no longer expected to be the security infrastructure.

This is a model for many other decisions. If a company repeatedly asks employees to notice the same risk, check the same condition, or resist the same temptation, it may be mistaking vigilance for design. A warning is not a control. A policy is not a process. A request to pay attention is not a substitute for changing the environment.

Consider expense approvals. One organization tells employees to inspect every invoice carefully. Another automatically flags duplicate vendors, unusual amounts, and payments that depart from historical patterns. The second organization has not eliminated judgment. It has made judgment more selective. People can spend their attention on ambiguous cases rather than mechanically rechecking everything.

This is the difference between decision labor and decision quality. A system can require more thought while producing worse decisions, especially when repetition produces fatigue. The goal is not maximum human involvement. The goal is maximum value from human involvement.

Defaults are decisions made in advance

When a safer login method becomes the default, the change may look like a minor interface adjustment. It is actually a transfer of decision rights. The user can still choose differently, but the system has made a considered choice on the user’s behalf.

Defaults matter because most people do not approach every choice as a fresh philosophical problem. They accept the path of least resistance, especially when the alternative requires new knowledge, extra steps, or a belief that the default might be wrong. In practice, a default is often a prediction about what most people would choose if they had the time and information to investigate the question fully.

That makes defaults powerful and dangerous. A good default quietly protects people. A bad default quietly exposes them. The central question is not whether defaults influence behavior. They do. The question is who designed them, what evidence informed them, and how easy it is to reverse them.

Organizations often fail here because they treat every choice as if it should remain open. They create menus, committees, and approval layers in the name of flexibility. Yet excessive optionality can become a form of negligence. If a company knows that one process is safer, faster, and easier to audit, forcing every employee to select among five variations does not respect autonomy. It exports design responsibility to people who may lack the time or context to carry it.

A useful framework is to divide decisions into three categories:

  1. Routine decisions: Frequent, well understood, and relatively easy to reverse. These should usually be automated or governed by strong defaults.
  2. Experimental decisions: Uncertain, measurable, and reversible. These should be made quickly, with clear tests and short feedback loops.
  3. Foundational decisions: Difficult to reverse, high impact, or capable of affecting many other choices. These deserve slower analysis, dissent, and explicit authorization.

This framework explains why speed and caution are not opposites. They are responses to different kinds of reversibility. Moving quickly on an experiment can be disciplined. Moving quickly on an irreversible commitment can be reckless. Delaying a routine choice can be wasteful. Delaying a foundational choice can be wise.

The practical mistake is to use one decision speed for everything. Some organizations deliberate over minor choices while rushing major ones. Others demand consensus for every action, creating a culture in which nobody is truly accountable. Both patterns confuse process with judgment.

From authentication to authority

There is a deeper connection between secure login and effective leadership. Authentication asks: Who is allowed to act? Decision design asks: Who is responsible for acting, under what conditions, and with what authority?

A password based system often creates a false sense of control. Whoever possesses the secret can enter. But possession is not the same as identity, and access is not the same as judgment. A more robust system verifies identity through several linked signals and then permits a person to act within a defined environment.

Organizations need an equivalent structure. They should not merely ask whether a decision has passed through the correct meeting. They should ask whether the person making it has the right context, authority, incentives, and accountability. A committee can authenticate a process while failing to authorize a real decision. Everyone may have participated, yet no one is responsible for the result.

This is why the question, “What would you do if you were in charge for one day?” is so revealing. It forces a person to stop commenting from the sidelines and begin allocating scarce resources. Which project would receive funding? Which assumption would be challenged? Which risk would be accepted? Which process would be removed?

The value of the question is not that one person suddenly becomes omniscient. Its value is that it converts vague opinion into accountable choice. It exposes hidden priorities. Someone who says that everything is urgent has to identify what would actually happen first. Someone who demands more data has to explain what decision the additional data would change.

The same test can be applied to personal reasoning. Ask:

  • If I had to decide today, what would I choose?
  • What evidence would genuinely change my mind?
  • Which part of the opposing view is strongest?
  • Is this decision reversible, and how could I make it more reversible?
  • Am I seeking information, or am I seeking permission to avoid responsibility?

These questions create a kind of mental authentication. They verify whether our stated beliefs are connected to actual willingness to act.

The enemy is not uncertainty. It is unexamined friction

People often delay decisions because they believe more information will eliminate uncertainty. Usually it will not. Information can narrow possibilities, but it rarely delivers certainty. At some point, judgment must operate with incomplete knowledge.

The more important question is whether the friction is useful. Some friction protects us from error. A second review before a large acquisition is useful. A cooling off period before an emotionally charged message can prevent damage. Requiring several layers of approval for a low value recurring purchase is not caution. It is administrative noise.

A strong decision system distinguishes productive friction from wasteful friction.

Productive friction appears where mistakes are costly, consequences are durable, or incentives are distorted. It can take the form of a pre mortem, an independent review, a short delay, or a requirement to state assumptions explicitly.

Wasteful friction appears where the decision is reversible, the evidence is already sufficient, or no one has the authority to act. It often hides behind respectable language: alignment, process, diligence, or stakeholder engagement. But if the only result is that responsibility becomes harder to locate, the friction is making the organization less intelligent.

Passkeys offer a vivid analogy. A good login experience preserves a meaningful security check while removing needless memory work. Similarly, a good organization preserves scrutiny where it protects the mission while removing repeated effort that adds no information.

This also clarifies why default settings should not be confused with coercion. A well designed default is transparent, easy to change, and based on a defensible understanding of risk. It does not say that users are incapable of choice. It says that the system will not make every person rediscover the same lesson through trial and error.

The same principle applies to beliefs. We should not make intellectual openness depend on having unlimited time to examine every claim. Instead, we can build defaults into our thinking: actively search for the strongest opposing evidence, separate facts from interpretations, state confidence levels, and revisit conclusions when conditions change. These are cognitive passkeys. They do not guarantee truth, but they make better reasoning easier to access.

Build systems that make courage ordinary

Courage is often described as a rare personal trait. In practice, its expression depends heavily on structure. A person is more likely to act decisively when authority is clear, experiments are safe, dissent is welcomed, and failure is informative rather than fatal.

This is why organizations should design decision environments rather than merely exhort employees to be bold. Give someone ownership of a defined problem. Specify what can be changed without permission. Establish a budget for experiments. Set a date for reviewing the outcome. Make the cost of inaction visible alongside the cost of action.

The final element matters. Delay is not neutral. Waiting can preserve optionality, but it can also consume it. A competitor learns. A customer leaves. A vulnerability remains exposed. A talented employee stops believing that anything will change. The person who says “we need more information” may be correct, but the organization should ask what information is worth the cost of waiting.

One practical method is to write a decision record with five fields:

  1. The decision: What exactly will we do?
  2. The evidence: What do we know, and how confident are we?
  3. The reversibility: What would it cost to change course?
  4. The trigger: What result or event would cause us to revisit the choice?
  5. The owner: Who has the authority and responsibility to act?

This structure does two things at once. It prevents impulsive decisions from masquerading as courage, and it prevents analysis from becoming an endless shelter from accountability.

It also creates a feedback loop. A decision is not a declaration of permanent truth. It is a commitment made under present conditions, with an explicit plan for learning. That mindset makes it easier to admit when a belief or strategy has become obsolete.

Clear thinking is not the ability to avoid changing your mind. It is the ability to change your mind without losing your ability to act.

Key Takeaways

  • Automate repeated judgment whenever the risk is understood. Use defaults, templates, alerts, and rules for routine decisions so human attention remains available for ambiguity.
  • Match decision speed to reversibility. Move quickly on measurable experiments. Slow down for choices that are costly, durable, or difficult to undo.
  • Turn opinions into accountable commitments. Ask what you would do, what evidence would change your mind, and who owns the next action.
  • Design productive friction. Add reviews and delays where they protect against serious error. Remove them where they merely distribute responsibility.
  • Make intellectual openness a default. Seek the strongest partial truth in opposing views, record confidence levels, and define in advance what would change your conclusion.

The future of good judgment will not be built by making every person more vigilant. Vigilance is finite, and modern life already spends too much of it on tasks that systems could handle.

The deeper goal is to create environments in which safe behavior, honest revision, and decisive action are the natural next steps. A secure account should not depend on a user remembering the perfect secret. A sound organization should not depend on every employee repeatedly summoning perfect courage. Both should be designed so that people can reserve their judgment for the moments when no default is enough.

That is the real promise of better systems: not that they make decisions unnecessary, but that they make meaningful decisions possible.

Sources

← Back to Library

Hatch New Ideas with Glasp AI 🐣

Glasp AI allows you to hatch new ideas based on your curated content. Let's curate and create with Glasp AI :)

Start Hatching 🐣