Test a write approval
Exercise approval and exact retry with a supported sandbox write.
Prepare the exercise
First request Durin sandbox from Connections and have an administrator approve it. Use sandbox__create_ticket with resource engineering/roadmap and a short title. The sandbox contains only synthetic data and needs no provider credentials. Choose a different active administrator to review. Publish Require another administrator; no other access guard should deny the request.
Test the lifecycle
Use a distinct action whose outcome you can check in the sandbox.
- Submit the write and confirm approval-required with no upstream execution.
- Have the other administrator review and approve the exact request.
- Confirm approval alone did not run the action.
- Retry the identical call before expiry and inspect its execution outcome.
- Submit a separate test request for refusal or expiry and verify it cannot execute with that unusable grant.
Troubleshooting
The first request is denied instead of awaiting approval
Inspect the denial reason. Missing membership, credentials, reviewed tools, or resource access must be resolved before approval can apply.
Frequently asked questions
Does the test approve later production writes?
No. The grant covers one exact request. Later actions need current authorization and any approval required by policy.