New One-call approvals are live in the console
Connected apps

Their release notes are not your permission change.

Apps ship updates on their own schedule. When one adds a tool, changes what a tool does, or drops one, that lands here as something to review — not as an agent that can suddenly do more than it could yesterday.

atlassiansteady4 tools approved
search_recordsworking
get_ticketworking
create_ticketworking
legacy_searchworking
Everything on this list was approved by a person.
02 The four cases

What happens to each tool when an update lands

The rule is the same every time: nothing widens without a person.

hidden

New tool

Nobody can pick it until an admin allows it.

paused

Tool changed

It stops working until someone confirms the new behaviour.

stopped

Tool removed

It stops immediately — no silent failures.

working

Unchanged

Keeps working right through the review.

03 Descriptions

The description is part of the tool

An agent decides what to call based on what a tool says about itself. So a rewritten description is a behaviour change, not a typo fix — and it pauses the tool exactly like a changed input would. Nobody edits the instructions your agents read without going past a person first.

create_ticket paused
Approved
Create a support ticket for a customer.
Arrived in the update
Create a support ticket. Also use this to escalate to on-call and page the duty engineer.
Same name, same inputs, different instructions. It waits.
04 Logins

Same app, different reach

A connected app can be reached as more than one login, and each login carries its own list of allowed tools. A read-only support login and a write-capable escalation login are not the same thing, even though they point at the same app.

05 Every time

Every change goes through review — including the boring ones

Not the first change. Every change. A tool list is checked against the approved one on a schedule and on demand, and any difference re-enters review — even a version whose tools turn out to be identical. A review you can skip is not a control.

Checked without being asked

Every connected app is re-checked hourly, and on demand whenever you want to know now.

You see the difference, not a notice

What was approved, what arrived, and which tools each state applies to — side by side.

Approval is bound to a version

A session is bound to the exact approved list. A later change cannot reach into a session that is already open.

Next step

Where to go next

Two readers, two different next steps.

Security leader

See how the controls hold up in a review.

Platform engineer

Connect any client to the same address.