Overview
Access Requests is the approval queue for employee requests. Employees ask for access in the employee Catalog at catalog.formal.ai. Admins approve or reject each request in the Control Plane, and Formal applies the approved change.What Employees Can Request
Employees see blocked actions under Activity in the employee Catalog. They follow their requests on its Requests page.
Review a Request
1
Open the queue
Go to Access Requests. Filter by Status: Pending, Approved, or Rejected. The list shows the resource, the requester, the requested access, when it was submitted, and its status.
2
Open the request
Click a request to see its details and the requester’s reason.
3
Add a reason (optional)
Under Decision for this request, add context for the requester and the audit trail.
4
Decide
Click the approve button, or Reject Request. The approve button names the outcome:
- Approve and create for a new MCP server
- Approve MCP access for an MCP server in the Catalog
- Approve one-time exception, Approve time-bound exception, or Approve permanent exception for policy exceptions
Permissions
The Access Requests page requires the Resource permission. Approvals that create suspensions or change access controls also require the Policies permission.API
Usecore.v1.ApprovalService to work with requests programmatically:
UpdateApprovalRequest only records the decision. It doesn’t create the MCP server, the access change, or the suspension. Approve from the Control Plane to apply the change.
Next Steps
Policy Suspensions
Manage the exceptions that approvals create
AI Governance
Learn how the Catalog and access controls work