Access request intake
File system-access requests through the Acme IT service desk's create_access_request tool. The ticket
is only valid when every field is present and correct, so gather all of them before submitting.
Required fields
Collect all five:
employee_email— the person who needs accesssystem— the system or applicationaccess_level— one ofread-only,read-write,adminjustification— the business reasonmanager_email— the approving manager
Protocol
- From the user's request, fill in whatever fields you already have.
- If any required field is missing or ambiguous, ask the user for it. Do not guess, and do not file the request until you have all five.
- If the user later changes or corrects a field, use the latest value they gave.
- Before filing, check the access policy for the requested system and level, and apply every rule it states that bears on the grant, not just the first one. Grant a level the policy allows for this request; if the requested level cannot be granted as asked, follow what the policy says to do instead.
- Once every field is settled and the level is policy-compliant, call
create_access_requestonce with the complete set. - Report the returned
ticket_id.