Skip to content

Review Link Approvals

Use the Link approvals tab to review requests to link a new sign-in identity to an existing account. A request appears when someone signs in through a provider whose identity is new to Qualytics but whose email matches an existing account, and the provider requires administrator approval for linking.

The tab shows a badge with the number of pending requests.

Permissions

Only users with the Admin role can review link approvals. See the Permissions page for details.

What Each Request Shows

Each pending request carries the context you need to decide safely:

Column Description
Requester The name and email of the existing account the identity wants to link to.
Provider The sign-in provider the request came through, with its type.
Provider subject The identifier the identity provider sent for the person.
Trust evidence What supports the request, such as Email verified, Domain allowed, or Signed assertion. Requests with no supporting evidence show No evidence recorded.
Requested When the request was made.

Steps

Step 1: Open the Link approvals tab on the Access settings page.

step-1-link-approvals-tab

Step 2: Review the request's provider, subject, and trust evidence.

Step 3: Approve or reject the request:

Click Approve on the request.

step-3-click-approve

A confirmation modal summarizes the decision: whether to allow the person to authenticate with that provider.

step-4-approve-modal

Click Approve link to confirm. A success message appears and the request leaves the list.

step-5-approve-success

Click Reject on the request.

step-3-click-reject

A confirmation modal summarizes the decision: whether to keep the person from authenticating with that provider.

step-4-reject-modal

Click Reject link to confirm. A success message appears and the request leaves the list.

step-5-reject-success

What the Requester Experiences

  • While pending: sign-in attempts through that provider are refused with a message that the link is awaiting administrator approval.
  • After approval: no notification is sent; the person simply signs in again and it succeeds.
  • After rejection: sign-in attempts through that provider are refused with a message that the request was not approved and to contact an administrator.

Info

Whether a link needs approval at all is controlled per provider by the Cross-provider account linking and Require administrator approval settings. See How It Works.