Docs / Approvals

Change control for policy, identity, and execution.

Gvner enforces approval gates, tracks diffs, and records immutable change evidence.

Approval topics

Approval workflow

1. Submit change

Policy and identity changes are proposed with explicit scope and justification.

2. Review diff

Review a deterministic change diff before approval.

3. Approve or deny

Multi-party approval is enforced when required.

4. Record evidence

Every approval produces an immutable timeline entry and receipt.

Deep dive

Rollback control

Approved rollback

Rollbacks require explicit approval and are recorded in the audit log.

Policy diffs

Every policy version is diffed and traceable to approvals.

Evidence artifacts

Approval queue snapshot
Change timeline entries
Rollback receipt + hash
Exportable approval packs
Audit diffs and change exports
Immutable registry references

Key API endpoints

POST /policy/change-request — propose policy change
POST /approvals/approve — approve a change
GET /approvals/timeline — approval timeline
POST /policy/rollback — approved rollback