sentinel_approve_escalation
Authorize or deny one escalated action with a single-use, payload-bound approval that expires, requiring an attributed human operator decision before execution.
Instructions
Operator authorization for one escalated action. Approvals are single-use, bound to the exact action payload, and expire. Approvals must be attributed: pass approvedBy with your host's operator identity — unattributed approvals, and decisions attributed to the identity that requested the escalation, are both refused. Configure your MCP host to always require human confirmation for this tool — the server cannot verify who calls it.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| reason | No | Optional reasoning from the human operator | |
| actionId | Yes | The actionId returned by sentinel_shield_inspect | |
| approved | Yes | true to authorize execution, false to deny | |
| approvedBy | No | Identity of whoever is deciding, when your host attributes it (recorded on the decision) |