durin
Sign up
Recipes

Test a write approval

Exercise approval and exact retry with a supported sandbox write.

Prepare the exercise

First request Durin sandbox from Connections and have an administrator approve it. Use sandbox__create_ticket with resource engineering/roadmap and a short title. The sandbox contains only synthetic data and needs no provider credentials. Choose a different active administrator to review. Publish Require another administrator; no other access guard should deny the request.

Test the lifecycle

Use a distinct action whose outcome you can check in the sandbox.

  1. Submit the write and confirm approval-required with no upstream execution.
  2. Have the other administrator review and approve the exact request.
  3. Confirm approval alone did not run the action.
  4. Retry the identical call before expiry and inspect its execution outcome.
  5. Submit a separate test request for refusal or expiry and verify it cannot execute with that unusable grant.

Troubleshooting

The first request is denied instead of awaiting approval

Inspect the denial reason. Missing membership, credentials, reviewed tools, or resource access must be resolved before approval can apply.

Frequently asked questions

Does the test approve later production writes?

No. The grant covers one exact request. Later actions need current authorization and any approval required by policy.

Try Durin with your MCP workflow.

Create an account to connect a client, route governed MCP requests, and review decisions with your admins.

Create an account