Manage approval queue
manage_approvalsWork the workspace's governance approval queue — the requests a require_approval policy captured instead of running. action:"list" returns pending requests plus recently decided ones, newest first, each with the captured tool, its arguments, a human target label, the requester, the policy reason, status and expiry (filter with status). action:"approve" records the decision and then RUNS the captured call as the original requester, reporting execution honestly: applied, failed (with the reason), expired, or uncertain (the decision stands but the outcome could not be verified — check the affected record before starting a new request). action:"deny" closes the request without running it; an optional note is stored with either decision. approve and deny need confirm:true — without it the call changes nothing and returns a preview naming the tool, target, requester and age. Admin-only. Two rules hold on every door: the person who requested an action can never decide it, and a require_approval policy on this tool itself blocks it rather than queueing it (the queue never queues its own operations).
When to use: When an admin wants to see what is waiting in the governance approval queue, or to approve or deny a captured request from the conversation instead of Settings → Governance. Approving runs the captured action and reports whether it applied.
Example: What's waiting for my approval? Approve the subscription cancellation.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| id | No | The request id to approve or deny (from a list call). Ignored by list. | |
| note | No | Optional decision note stored with an approve or deny. | |
| limit | No | list only: how many requests to return, newest first (default 50, max 200). | |
| action | Yes | list the queue, or approve / deny one request by id. One of: list | approve | deny. | |
| status | No | list only: return requests in exactly this status (pending, approved, executing, indeterminate, denied, expired, applied, failed); omit for every status. | |
| confirm | No | approve / deny: true carries the decision out; omitted or false returns the preview and changes nothing. |
Output Schema
| Name | Required | Description | Default |
|---|---|---|---|
| note | No | ||
| count | No | ||
| action | No | ||
| decided | No | ||
| approval | No | ||
| approvals | No | ||
| execution | No | ||
| approval_id | No | ||
| requires_confirm | No |