Where one approval request has got to
The endpoint a blocked client polls. Expiry is reported as a status rather than as a 404, because a caller waiting on a request that timed out deserves to be told which of the two happened.
The endpoint a blocked client polls. Expiry is reported as a status rather than as a 404, because a caller waiting on a request that timed out deserves to be told which of the two happened.
Authorization
ApiKeyAuth In: header
Path Parameters
Response Body
application/json
application/json
curl -X GET "https://approvals/string"{ "id": "string", "principal": { "team": "string", "user": "string", "keyId": "string" }, "sessionId": "string", "operation": "string", "onceOnly": true, "method": "string", "path": "string", "summary": "string", "createdAt": "2019-08-24T14:15:22Z", "expiresAt": "2019-08-24T14:15:22Z", "status": "pending", "scope": "once", "decidedBy": "string", "decidedAt": "2019-08-24T14:15:22Z"}{ "error": "string", "errorCode": "APPROVAL_REQUIRED", "detail": null}Approve or deny a pending request POST
Console sessions only. A credential must not be able to approve its own writes — that would make the gate a formality the agent walks through by itself.
What is waiting on you, and what you have already allowed GET
Scoped to the caller's team+user, not to a key: the person deciding owns every key they hold, and this list is read by a human.