Docs / Approvals
Change control for policy, identity, and execution.
Gvner enforces approval gates, tracks diffs, and records immutable change evidence.
Approval topics
Approval workflow
1. Submit change
Policy and identity changes are proposed with explicit scope and justification.
2. Review diff
Review a deterministic change diff before approval.
3. Approve or deny
Multi-party approval is enforced when required.
4. Record evidence
Every approval produces an immutable timeline entry and receipt.
Deep dive
Rollback control
Approved rollback
Rollbacks require explicit approval and are recorded in the audit log.
Policy diffs
Every policy version is diffed and traceable to approvals.
Evidence artifacts
Approval queue snapshot
Change timeline entries
Rollback receipt + hash
Exportable approval packs
Audit diffs and change exports
Immutable registry references
Key API endpoints
POST /policy/change-request — propose policy changePOST /approvals/approve — approve a changeGET /approvals/timeline — approval timelinePOST /policy/rollback — approved rollback