This is the Tool Approval Workflow Preview — the central confirmation and approval layer for all risky tool actions in Smart Shikka Core. Before any send, write, payment, external API call, research execution, or customer mutation, the owner must approve the action through this workflow. This page is preview-only; no approvals are persisted, no execution is unlocked.
| Category | Risk Level | Owner Approval | Preview Status |
|---|---|---|---|
| Read-Only Preview | safe_preview | recommended | allowed |
| External API Validation | medium_external_lookup | required | allowed |
| Email Confirmation | medium_external_lookup | required | allowed |
| Phone Confirmation | medium_external_lookup | required | allowed |
| Notification Send | high_send_or_write | required | blocked |
| Messaging Send | high_send_or_write | required | blocked |
| File Upload | high_send_or_write | required | blocked |
| Screenshot Capture | high_send_or_write | required | blocked |
| PDF Generation | high_send_or_write | required | blocked |
| Research Live Run | high_send_or_write | required | blocked |
| Database Write | high_send_or_write | required | blocked |
| Payment / Invoice Mutation | critical_payment_or_customer_mutation | required | blocked |
| Level | Requires Approval |
|---|---|
| safe_preview | No |
| low_read_only | Yes |
| medium_external_lookup | Yes |
| high_send_or_write | Yes |
| critical_payment_or_customer_mutation | Yes |
Risk: medium_external_lookup · Owner approval required before deliverability check
Risk: high_send_or_write · Blocked in preview · Owner approval required
Risk: high_send_or_write · Blocked in preview · Owner approval required
Risk: high_send_or_write · Blocked in preview · Python/network disabled
Risk: critical_payment_or_customer_mutation · Blocked in preview · Critical approval required
Static statuses only — no real decision is persisted or executed.
| Action | Reason |
|---|---|
| Payment without approval | Critical approval required |
| Send without approval | Owner must approve before any send |
| Python research without approval | Python/network disabled in preview |
| External API without provider/key | Provider selection and key required |
| Policy | Status |
|---|---|
| Approval persistence | Disabled |
| Execution unlock | Disabled |
| Send capability | Disabled |
| Write capability | Disabled |
| Secret exposure | None |
Approved actions are planned through the Safe Tool Execution Plan. Approved actions still require adapter allowlist before live execution via the Tool Adapter Registry. Live provider calls are routed through External Service Toolkit. Policy Decision API decides when owner approval is required.
Version 2.1.2.0.263 · Phase: tool_approval_workflow_preview · PR: #263 · Smart Shikka