Skip to main content

Overview

Access Requests is the approval queue for employee requests. Employees ask for access in the employee Catalog at catalog.formal.ai. Admins approve or reject each request in the Control Plane, and Formal applies the approved change.
Access Requests is separate from the Slack approval flow built with Forms and Workflows. Both can run in the same organization.

What Employees Can Request

Employees see blocked actions under Activity in the employee Catalog. They follow their requests on its Requests page.

Review a Request

1

Open the queue

Go to Access Requests. Filter by Status: Pending, Approved, or Rejected. The list shows the resource, the requester, the requested access, when it was submitted, and its status.
2

Open the request

Click a request to see its details and the requester’s reason.
3

Add a reason (optional)

Under Decision for this request, add context for the requester and the audit trail.
4

Decide

Click the approve button, or Reject Request. The approve button names the outcome:
  • Approve and create for a new MCP server
  • Approve MCP access for an MCP server in the Catalog
  • Approve one-time exception, Approve time-bound exception, or Approve permanent exception for policy exceptions
Formal applies the change, then marks the request Approved. The duration of a time-bound exception is the one the employee chose. You can’t change it during approval. Verify: The request moves to Approved. For an exception, the suspension appears in Policy Suspensions.
Formal doesn’t send notifications for Access Requests. Check the queue regularly, or build a Slack approval flow with Workflows for time-sensitive requests.

Permissions

The Access Requests page requires the Resource permission. Approvals that create suspensions or change access controls also require the Policies permission.

API

Use core.v1.ApprovalService to work with requests programmatically: UpdateApprovalRequest only records the decision. It doesn’t create the MCP server, the access change, or the suspension. Approve from the Control Plane to apply the change.

Next Steps

Policy Suspensions

Manage the exceptions that approvals create

AI Governance

Learn how the Catalog and access controls work