Blog
New Capability: Access Request Agent
Author
alec
SailPoint
Description
Requesting access is now easier than ever with the new Access Request Agent in Harbor Pilot. Instead of navigating the standard access request experience, you can now use natural language to request access for yourself, check on a request, or cancel a request. This eliminates the need to understand complex catalog structures like roles, entitlements, and Access Profiles.
End users can access the Harbor Pilot via a new settings page. An administrator must first enable this feature in the GenAI Settings.
New Capabilities
- Start an access request via natural language in Harbor Pilot (e.g., “request access to Salesforce”).
- When a request matches multiple access items, prompt the user to clarify which item they mean (and narrow results).
- Account selection support when the requestee has multiple accounts on the target source (to ensure the request provisions to the intended account).
- Ask for current status of an access request via natural language in Harbor Pilot.
- Cancel an access request via natural language in Harbor Pilot.
- End users can now use Harbor Pilot. Admins must turn this on in Global → System Settings → Feature Settings → GenAI → Enable Harbor Pilot for End Users.
Not supported / constraints (confirmed):
- Requesting access on behalf of someone else.
Problem
Users find it difficult and confusing to navigate the Identity Security Cloud to request access to an application, a critical but infrequent task, due to lack of UI familiarity and a lack of clarity on how access is structured (roles vs. entitlements vs. Access Profiles).
Solution
The Access Request Agent enables end users to kick off and complete an access request via Harbor Pilot using natural language:
- The user describes what they need (“I need access to Workday”).
- If multiple matches exist, Harbor Pilot asks follow-up questions to select the right access item.
- Harbor Pilot shows a final summary for confirmation.
- Upon submission, Harbor Pilot confirms success and provides a link to view the request in the Request Center.
Who is affected?
Customers who have turned on Harbor Pilot. End users can now access Harbor Pilot in a new settings page. This must be turned on by an admin in GenAI Settings.
Action Required
In order for users to access Harbor Pilot on their new settings page, an administrator must first enable it in the GenAI Settings.
Important Dates
2026-03-18: rollout starts (phased)
To ask questions and learn more please visit the Developer Community.