Skip to content

Tool reviews

Tool reviews inbox in Settings › Approvals The Tool reviews inbox, with the status and kind filters.

Description

The Tool reviews page is the governance and moderation inbox. It is the Tool reviews tab of Settings › Approvals (route /review-items), reached from the user-block menu at the bottom of the left sidebar → Settings → Approvals. It is visible to users who hold the egress-approval permission (admin / tenant admin). (See the Approvals overview for the full tab set.)

It collects two kinds of item, both decided in the same queue:

Kind What it is
Tool gate An unattended agent run reached a gated built-in tool and is held until a reviewer decides. The whole tool batch for that turn is suspended; nothing is called until the review is resolved.
Flagged prompt / Flagged output A user prompt or a model output that a guardrail marked as flagged (observe action). The interaction is queued here for a human to look at; it does not block the conversation.

💡 Note: A tool gate is configured on the agent (approval in the agent's tool configuration). A flagged prompt/output is produced automatically when a guardrail with the flag action matches a top-level turn — see Guardrails.

Reviewing an item

Each row shows the kind, a subject (the gated tool name, or a reference to the flagged interaction), the status, and a trace reference you can correlate in Request logs. Filter the queue by status and by kind.

A row has one of the statuses below:

Status Meaning
Pending Waiting for a decision.
Approved A reviewer approved it. A held tool call is released and the run resumes.
Denied A reviewer denied it. A held tool call is never made.
Expired The hold passed its deadline before a decision. A held tool call is never made (fail-closed).
Completed The decision has been carried out.

Proceed as follows to decide a review:

  1. Open the Tool reviews tab.
  2. Click on a Pending row.
  3. The decision dialog opens, showing the subject and, optionally, an Annotation field.
  4. Enter an annotation for the record if required.
  5. Click on Approve or Deny.

-> The row moves to the decided status. A held agent run resumes on Approve and is abandoned on Deny or Expired.

See also

  • Agent approvals — delivery approvals for scheduled agent runs.
  • Agents — configuring an agent's gated tools.
  • Guardrails — the flag action that queues a moderation review.