Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Unified Approval Rules Overview

The approval rules and approval configuration are unified to provide a consistent approach to managing approval workflows.

The Unified Approval Rules simplifies approval management by combining approval rules and approval configurations into a single, unified table. This enables one approval rule to apply to multiple finding types such as VR, CVR, AVR, and CC, unlike before when rules were specific to individual tables or findings.

It is a standardized way to route approval requests across multiple findings and remediation task tables. Administrators use Unified Approval Rules to define how approval requests are triggered, which tables they apply to, and how approvers are assigned across levels. You can configure rule types, conditions, expiry values, and multi-level approval requirements.

Key updates:

  • Support for multiple findings and remediation task tables.
  • Step-based rule configuration—rule type, applies to, conditions, levels.
  • Required approval levels before activation.
  • Configurable expiry periods for approvals and notifications.
  • Role-based routing using users and groups.

  • Create or edit approval rules
    Create and activate an approval rule by selecting a rule type, choosing the target tables, defining conditions, and configuring approval levels.

  • Create or edit approval levels
    Define the levels of users and user groups that are going to approve the exception requests.

Parent Topic:Using Unified Security Exposure Management