Access Requests, Approvals and Provisioning

Learn how Microsoft Purview access requests move through approval and provisioning, and where owner, steward and access-provider responsibilities sit.

Microsoft Purview can provide a governed request process for access to a data product and its underlying assets.

Configure the policy

At data-product level, Data Product Owner permissions are required to manage the access policy. Policies can define permitted use, approval requirements and the people responsible for responding to requests.

Approval flow

Depending on the policy, a request can pass through manager approval, privacy or compliance review, the data-product access approver and an optional access provider.

Provisioning is a separate step

Approval in Unified Catalog does not automatically grant technical access to every underlying asset. The final approver or access provider must provision access to the individual assets and record the provisioning status and instructions.

Request statuses

  • Pending
  • Declined
  • Approved
  • Completed

This distinction is important: Approved means the governance decision has been made, while Completed means the required asset access has actually been provisioned.

Learning with Data SkyLab Studio

Follow practical Microsoft Purview and Data Governance learning from Data SkyLab Studio on YouTube.