Governance & Security¶ Human-in-the-Loop Approvals When to use approvals Configure approvals per connection The approval workflow Step 1 — The AI tries a risky action Step 2 — The approver reviews the request Step 3 — Approve or reject Step 4 — The AI surfaces the result Approval lifecycle Cron behaviour Best practices Audit Logs Where to find it What is recorded Search and filter Payload logging Retention and cleanup Cannot edit, cannot delete Use cases Sessions Where to find it What a session record contains Manual control How sessions interact with connections Tools that use the session Cleanup cron Search filters Rate Limits Defaults Per-connection overrides How it is enforced What happens when a connection hits the limit IP Restrictions Where to configure them Supported formats How the rules combine Trusting your reverse proxy Typical use cases What the user sees