What Serval Manages
Serval owns the access request workflow: who can request what, under which rules, how it’s provisioned, and when it’s automatically revoked. Serval provides:- Fine-grained access policies with time limits, approvals, and justification requirements that can be saved and reused across applications
- Flexible provisioning via adding useres to IdP groups, direct API, or custom AI-generated workflows
- Real-time audit trails with attestation reminders, one-click revocation, and exportable logs for compliance
- IdP integration to import existing roles, groups, and policies in minutes
The Complete Just-in-Time Access Lifecycle
Serval manages access from request through automatic removal:- Request - User asks for access through the configured help desk (e.g., Slack, Teams, or app.serval.com)
- Eligibility check - Access profiles determine if they can request this role
- Approval - Access policies route the request to appropriate approvers
- Provisioning - Access is granted via your chosen method (linked group, direct API, custom workflows, or manual task)
- Active access - User has the access for the configured duration
- Automatic revocation - When time expires, Serval removes access using the same provisioning method
- Logs - Entire lifecycle is logged and accessible via Serval

