Articles on: Integrations

Microsoft 365 Admin App Requests

In Microsoft 365, only certain admin roles can review and approve app requests. The approval process depends on the app platform involved (Teams, Entra ID, Intune, Store, or SharePoint).


First: Clarify What “App Request” Means

The term “app request” can refer to different things across the Microsoft ecosystem. Identifying the correct scenario is critical because roles, approval paths, and admin portals differ.


Common meanings include:

  • Microsoft Teams apps users request when an app is blocked by policy
  • Microsoft Entra ID (Azure AD) apps requiring admin consent
  • Microsoft Intune (Endpoint Manager) changes that require multi-admin approval
  • Microsoft Store for Business/Education app requests
  • SharePoint Store apps requested for a specific site
Always confirm which platform the request is coming from before taking action.


Teams App Requests

When a user requests approval for a blocked Teams app, the request is handled in the Teams admin center.


Basic Flow
  1. Go to Teams admin center
  2. Navigate to Teams apps → Manage apps → User requests
  3. Select the app request
  4. Review:
  • App details
  • Permissions
  1. Take action:
  • Allow the app (or update the relevant app policy), or
  • Ignore/Dismiss the request
Approval may require adjusting the Teams app permission or setup policy, depending on how the app is restricted.


If a user sees “Need admin approval” when signing into an application, the request goes through the Entra admin consent workflow.


High-Level Process
  1. Ensure the Admin Consent Workflow is enabled so users can submit requests
  2. Go to Entra admin center
  3. Navigate to Enterprise applications → Admin consent requests
  4. Open the request and review:
  • Requested permissions
  • App publisher and purpose
  1. Choose an action:
  • Approve (grants admin consent, typically tenant-wide), or
  • Deny, with a justification
Approving an Entra admin consent request usually grants permissions across the entire tenant, not just for the requesting user.

Updated on: 20/01/2026

Was this article helpful?

Share your feedback

Cancel

Thank you!