# New Capability: Machine Identity Access Requests

**URL:** <https://developer.sailpoint.com/discuss/t/new-capability-machine-identity-access-requests/218572>\
**Category:** Product News\
**Tags:** machine-identity-security, access-requests, identity-security-cloud, new-capability\
**Created:** [August 10, 2026, 3:45pm UTC](https://developer.sailpoint.com/discuss/t/new-capability-machine-identity-access-requests/218572 "2026-08-10T15:45:52Z")\
**Posts on this page:** 7\
**Page:** 1

<div class="post-metadata">

**Author:** ![PGookin](https://sea1.discourse-cdn.com/sailpoint/discuss/user_avatar/developer.sailpoint.com/pgookin/32/5680_2.png) [@PGookin](https://developer.sailpoint.com/discuss/u/PGookin)\
**Post date:** [August 10, 2026, 3:45pm UTC](https://developer.sailpoint.com/discuss/t/new-capability-machine-identity-access-requests/218572/1 "2026-08-10T15:45:52Z")

</div>

## **Description**

We are pleased to announce the release of Access Requests for Machine Identities.

With this release, **Machine Identity Security (MIS)** customers can now enable their users to request access to Machine Identities. When this feature is enabled, the option to request access on behalf of Machine Identities becomes available to users of the Identity Security Cloud (ISC) Request Center.

## **Machine Identity Access Request Overview**

In this release, access requests for Machine Identities is available for entitlements only. The ability to request roles and access profiles for Machine Identities will be supported in a future release.

Entitlements may only be requested from sources where the selected machine identities already have one or more accounts. The ability to to create accounts on-demand will be supported in a future release.

If a Machine Identity has multiple accounts on a source, the requester will be required to select the target account for provisioning.

Approval for Machine Identity access requests is determined by the access request configuration for each entitlement. However, in the case where a manager is assigned as the approver, the approval is routed to the Machine Identity owner.

## **Machine Identity Screenshots**

 ![Machine Identity Access Request](https://global.discourse-cdn.com/sailpoint/original/3X/8/c/8c932b3ddc19ba075bcc269b8261a48f62d89411.png)

**Machine Identity Access Request**

 ![Machine Identity Entitlement Selection](https://global.discourse-cdn.com/sailpoint/original/3X/b/d/bdedd3c4d8632f538c1e010e0448d179acc6e1c5.png)

**Machine Identity Entitlement Selection**

 ![Machine Identity Review Request](https://global.discourse-cdn.com/sailpoint/original/3X/b/6/b6c7730f8ca916497a455a01899b4306c14a8ce0.png)

**Machine Identity Review Request**

## **Who is affected?**

This is being rolled out to all Machine Identity Security customers.

## **Important Dates**

Sandbox rollout: **week of Jul 24, 2026**

Production rollout: **week of Aug 04, 2026**

---

<div class="post-metadata">

**Author:** ![mcheek](https://sea1.discourse-cdn.com/sailpoint/discuss/user_avatar/developer.sailpoint.com/mcheek/32/23705_2.png) [@mcheek](https://developer.sailpoint.com/discuss/u/mcheek)\
**Post date:** [August 13, 2026, 11:00am UTC](https://developer.sailpoint.com/discuss/t/new-capability-machine-identity-access-requests/218572/2 "2026-08-13T11:00:01Z")

</div>

Is this available via API call?

---

<div class="post-metadata">

**Author:** ![patrickboston](https://sea1.discourse-cdn.com/sailpoint/discuss/user_avatar/developer.sailpoint.com/patrickboston/32/5876_2.png) [@patrickboston](https://developer.sailpoint.com/discuss/u/patrickboston)\
**Post date:** [August 13, 2026, 12:44pm UTC](https://developer.sailpoint.com/discuss/t/new-capability-machine-identity-access-requests/218572/3 "2026-08-13T12:44:55Z")

</div>

@mcheek Looks like you can just use the existing access request endpoint:

 ![image](https://global.discourse-cdn.com/sailpoint/original/3X/b/a/ba2d39144144ea9a1f83191cb43d617dbcf3ec69.png)

---

<div class="post-metadata">

**Author:** ![mcheek](https://sea1.discourse-cdn.com/sailpoint/discuss/user_avatar/developer.sailpoint.com/mcheek/32/23705_2.png) [@mcheek](https://developer.sailpoint.com/discuss/u/mcheek)\
**Post date:** [August 13, 2026, 1:04pm UTC](https://developer.sailpoint.com/discuss/t/new-capability-machine-identity-access-requests/218572/4 "2026-08-13T13:04:32Z")

</div>

Do you have to specify the account selection stuff and whatnot? Or is that just because that particular identity has multiple accounts in that source?

---

<div class="post-metadata">

**Author:** ![patrickboston](https://sea1.discourse-cdn.com/sailpoint/discuss/user_avatar/developer.sailpoint.com/patrickboston/32/5876_2.png) [@patrickboston](https://developer.sailpoint.com/discuss/u/patrickboston)\
**Post date:** [August 13, 2026, 1:52pm UTC](https://developer.sailpoint.com/discuss/t/new-capability-machine-identity-access-requests/218572/5 "2026-08-13T13:52:08Z")

</div>

I just did this in the UI first and then stole the request body and then tried it against the API endpoint. So no you probably do not need all of that information.

---

<div class="post-metadata">

**Author:** ![bastienprulhiere](https://avatars.discourse-cdn.com/v4/letter/b/9d8465/32.png) [@bastienprulhiere](https://developer.sailpoint.com/discuss/u/bastienprulhiere)\
**Post date:** [September 16, 2026, 7:50am UTC](https://developer.sailpoint.com/discuss/t/new-capability-machine-identity-access-requests/218572/6 "2026-09-16T07:50:08Z")

</div>

Hello @PGookin

Can you tell us more about the arrival of Access Profiles and Roles for machine identities? Q4 2026 or Q1 2027?

---

<div class="post-metadata">

**Author:** ![sbomma](https://avatars.discourse-cdn.com/v4/letter/s/8baadc/32.png) [@sbomma](https://developer.sailpoint.com/discuss/u/sbomma)\
**Post date:** [September 23, 2026, 7:28am UTC](https://developer.sailpoint.com/discuss/t/new-capability-machine-identity-access-requests/218572/7 "2026-09-23T07:28:52Z")

</div>

Can we control what entitlements and roles are visible for machine vs humans - meaning can we control the visibility for each (human only, machine only, both)?
