Internal Escalation

2 min. readlast update: 07.10.2026

The Internal Escalation feature allows organizations to add a second layer of review to Approval Requests before a request is fully approved or rejected.

When Internal Escalation is enabled, certain administrators can be required to escalate Approval Requests instead of actioning them immediately. The request remains blocked until another authorized administrator reviews the escalation and takes final action.

Enable the Internal Escalation Advanced Setting to gain access to the following user permissions required:

  • Approve Escalation
  • Escalation Optional
  • Escalation Required

Navigate to the Advanced Settings page.

Select New Setting in the top left corner.

In the Create sidebar, select Internal Escalation from the Setting Type dropdown.

Select the desired Applies To.

Select to add this setting to the top or bottom of the list.

In the Parameters section, select the checkbox under Internal Escalation Enabled.

Click the 'Create' button to save the setting.

This doesn't require a change in the agent, so no need to press the Update Agents button.

The new permission should now be visible in the user permission dropdown.

The Notification Settings will now include an option for  Internal Escalation Notification.

Select this type and specify the admins you want to be alerted when an item is escalated internally, such as admins with the Approve Escalation permission. For more information on configuring Notification Settings see the associated article: Notification Settings Page | ThreatLocker Help Center

 

Was this article helpful?