Approvals

Approvals is a governance queue where administrators review and approve or reject sensitive requests from workspace members. Requests carry a risk rating—and, for work sessions, an AI pre-review—to help reviewers decide quickly and safely.

Note: Approvals is available to superusers. A separate Approval history view (under Audit) shows past decisions.

What goes through approvals

Several kinds of sensitive requests route here:

  • Work session and work session modification
  • Service token and token modification
  • Username and group name changes

What an approver sees—and what they can adjust—differs by type. See Request types.

The approvals queue

Open Pending approvals in the sidebar. Each request shows its type, the requested data, who requested it, and its status:

StatusMeaning
PendingAwaiting a decision
ApprovedApproved by a reviewer
RejectedRejected by a reviewer
CanceledWithdrawn by the requester
ExpiredTimed out before a decision

Filter the queue by status—All, Pending, Resolved, or Expired & canceled—and by request type, or search across requests.

For how to open and act on a request, see Reviewing requests.

Who can approve

Reviewing the queue requires the superuser role; others can’t open it. A requester can’t approve their own request—they track its status (for example, from their dashboard) until an administrator decides.

Approval history

Resolved requests are available in Approval history under Audit > Governance, where you can review past approve and reject decisions.

Last updated: