P4.14.4Written traces of decision processesdesign

Retrospective accountability depends on written traces of decisions

Aliases: decision provenance · retrospective accountability · decision records

What it is

Ethical problems mostly surface after the fact: a harmless default at launch becomes harm when the user population shifts; a reasonable threshold becomes systematic bias after the business pivots. The only thing that can then answer "why was it done this way" is the written trace of the decision process — why this option, what alternatives were weighed, who disagreed, on what data. Memory is unreliable (people leave; collective memory drifts toward success narratives), chat logs expire, and an untraced decision is, retrospectively, a decision that never happened: the harm cannot be attributed, the lesson cannot settle, and the same error reappears in the next project. Trace-keeping is not paperwork burden; it is the only way an organization stays accountable to its own decisions.

Why it happens

The value runs through three time directions. Attribution: post-hoc review (incident retrospectives, regulatory investigation, press scrutiny) must distinguish "knowable then but ignored" from "unknowable then" — the former is culpability, the latter risk, and they are handled entirely differently; without written grounds the distinction is rebuilt from memory, which drifts systematically toward self-interest. Learning: cross-project transfer of lessons depends on searchable records; orally transmitted lessons vanish with turnover, and a written "why we rejected this option back then" is the most valuable input to the same debate years later. Ex-ante discipline: knowing every decision will be traced changes the quality of the weighing in the present — the trace rule improves thinking before the trace exists, which is its strongest effect and the reason it is often resented.

Where it stops holding

Trace-keeping has real costs and bounds. Diminishing returns first: not every decision merits writing — tier by population impact and irreversibility, with key decisions documented fully and routine small changes lightly or not at all; full-volume tracing produces an archive ocean nobody reads. Then the honesty trap: official rationales written to satisfy the requirement (correct-sounding filler) are worse than no trace, because they poison later attribution; the countermeasure is recording the actual weighing — uncertainties and reluctance included — not the beautified conclusion. Finally, the legal boundary: traces can become adverse evidence in litigation and regulation, so legal counsel leans toward keeping less — a genuine organizational tension that needs an explicit policy stance (what is kept, who accesses, how long retained), not avoidance.

Applying it

  • Define a minimal decision-record template: problem, alternatives considered, chosen rationale, known risks, dissent and its handling, re-review trigger — six fields on one page, mandatory only for decisions at the "population-affecting or irreversible" tier.
  • Record objections without exposing objectors: capture "concern X was raised and handled by Y," keeping dissent traceable without transferring risk onto whoever raised it.
  • Embed tracing into the toolchain rather than a separate document: decision fields inside merge-request templates and release review sheets, so writing the trace and making the decision occur in the same motion — separate them and one of the two will always be missing.
  • Verify: every half-year, sample a recent incident retrospective and test "can the decision basis of the time be reconstructed from traces alone" — if reconstruction still leans on participants' memories, the tracing covers the wrong tier; reset tiering by the gaps in the decisions the incident touched.

Related

  • Same group: P4.14.2 Assessment must bind to gates with veto power · P4.14.1 Process's job is to surface questions, not to settle them
  • Adjacent: P4.07.3 Documenting dissent within teams · P4.13.3 Accounting for unadopted participation outcomes
  • Search terms: decision provenance · design rationale · accountability trail

Cards in the same group

Quick Actions

Share

Share this page

ios_share

https://hci.top/en/handbook/P4.14.4