# If the approver approves the access request by accident instead of denying it and the approval was inappropriate can we remove that inappropriate approved access automatically

**URL:** <https://developer.sailpoint.com/discuss/t/if-the-approver-approves-the-access-request-by-accident-instead-of-denying-it-and-the-approval-was-inappropriate-can-we-remove-that-inappropriate-approved-access-automatically/127868>\
**Category:** SHF Discussion and Questions\
**Tags:** access-requests, identity-security-cloud\
**Created:** [May 12, 2025, 9:13pm UTC](https://developer.sailpoint.com/discuss/t/if-the-approver-approves-the-access-request-by-accident-instead-of-denying-it-and-the-approval-was-inappropriate-can-we-remove-that-inappropriate-approved-access-automatically/127868 "2025-05-12T21:13:41Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![sgonuguntla](https://avatars.discourse-cdn.com/v4/letter/s/45deac/32.png) [@sgonuguntla](https://developer.sailpoint.com/discuss/u/sgonuguntla)\
**Post date:** [May 12, 2025, 9:13pm UTC](https://developer.sailpoint.com/discuss/t/if-the-approver-approves-the-access-request-by-accident-instead-of-denying-it-and-the-approval-was-inappropriate-can-we-remove-that-inappropriate-approved-access-automatically/127868/1 "2025-05-12T21:13:42Z")

</div>

If an approver accidentally approves an access request instead of revoking it, and the approval was inappropriate, can the approved access be revoked automatically in SailPoint IdentityNow  
I read in the product documentation that the manager or the identity for whom the request was approved can submit a revocation request through **My Access** , but is there a way for the approver to revoke the approved access automatically or for it to be handled through a workflow?

---

<div class="post-metadata">

**Author:** ![ajmerasunny1](https://avatars.discourse-cdn.com/v4/letter/a/3be4f8/32.png) [@ajmerasunny1](https://developer.sailpoint.com/discuss/u/ajmerasunny1)\
**Post date:** [May 12, 2025, 10:39pm UTC](https://developer.sailpoint.com/discuss/t/if-the-approver-approves-the-access-request-by-accident-instead-of-denying-it-and-the-approval-was-inappropriate-can-we-remove-that-inappropriate-approved-access-automatically/127868/2 "2025-05-12T22:39:15Z")

</div>

If an approval was granted in error, approver can reach out to manager and the manager—or even the user—can revoke that access out-of-the-box.

better to leverage the built-in revocation capability rather than build a custom workflow for this use case

---

<div class="post-metadata">

**Author:** ![system](https://global.discourse-cdn.com/sailpoint/original/2X/f/f2136700ed5e3703e0b85e02f6be799dacca7735.png) [@system](https://developer.sailpoint.com/discuss/u/system)\
**Post date:** [July 11, 2025, 10:39pm UTC](https://developer.sailpoint.com/discuss/t/if-the-approver-approves-the-access-request-by-accident-instead-of-denying-it-and-the-approval-was-inappropriate-can-we-remove-that-inappropriate-approved-access-automatically/127868/3 "2025-07-11T22:39:22Z")

</div>

This topic was automatically closed 60 days after the last reply. New replies are no longer allowed.
