Approvals
Approvals is a governance queue where administrators review and approve or reject sensitive requests from workspace members. Requests carry a risk rating—and, for work sessions, an AI pre-review—to help reviewers decide quickly and safely.
Note: Approvals is available to superusers. A separate Approval history view (under Audit) shows past decisions.
What goes through approvals
Several kinds of sensitive requests route here:
- Work session and work session modification
- Service token and token modification
- Username and group name changes
What an approver sees—and what they can adjust—differs by type. See Request types.
The approvals queue
Open Pending approvals in the sidebar. Each request shows its type, the requested data, who requested it, and its status:
| Status | Meaning |
|---|---|
| Pending | Awaiting a decision |
| Approved | Approved by a reviewer |
| Rejected | Rejected by a reviewer |
| Canceled | Withdrawn by the requester |
| Expired | Timed out before a decision |
Filter the queue by status—All, Pending, Resolved, or Expired & canceled—and by request type, or search across requests.
For how to open and act on a request, see Reviewing requests.
Who can approve
Reviewing the queue requires the superuser role; others can’t open it. A requester can’t approve their own request—they track its status (for example, from their dashboard) until an administrator decides.
Approval history
Resolved requests are available in Approval history under Audit > Governance, where you can review past approve and reject decisions.