> ## Documentation Index
> Fetch the complete documentation index at: https://docs.niadra.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Request a decision review

> A request to review an automated decision, sent to the controller's data protection officer with the explanation built from receipts.



## OpenAPI

````yaml openapi/en/cell.json POST /v1/profiles/{profile_id}/review-requests
openapi: 3.1.0
info:
  title: Niadra data API
  version: '1'
  description: >-
    Writing, context, history, objects, identity, privacy and governance of one
    space. Every space has a stable address, with the space and the region in
    its name.
servers:
  - url: https://{space}.{region}.api.niadra.com
    variables:
      space:
        default: acme-prod
        description: The space, which comes in the source key.
      region:
        default: us-east-2
        description: The region of the space, which also comes in the key.
security: []
paths:
  /v1/profiles/{profile_id}/review-requests:
    post:
      tags:
        - signals
      summary: Request a decision review
      description: >-
        Sent to the controller's data protection officer with the explanation
        built from receipts.


        **Authentication.** Console person token with the `security` role (or
        admin), or a source key with the `admin` scope. It answers only in a
        space with one of the `signals`, `coordination` features on (the
        `features` document); in a space with none of them, 404.
      operationId: create_review_request_v1_profiles__profile_id__review_requests_post
      parameters:
        - in: path
          name: profile_id
          required: true
          schema:
            format: uuid
            title: Profile Id
            type: string
        - in: header
          name: Idempotency-Key
          required: true
          schema:
            maxLength: 256
            minLength: 1
            title: Idempotency-Key
            type: string
          description: >-
            Required. Kept 24 hours with the hash of the body: a retry with the
            same key returns the first answer, and the same key with a different
            body returns 409 `conflict`.
      requestBody:
        content:
          application/json:
            schema:
              $ref: '#/components/schemas/ReviewRequestCreate'
        required: true
      responses:
        '201':
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/ReviewRequest'
          description: The request, with the explanation built from receipts.
        '422':
          content:
            application/problem+json:
              schema:
                $ref: '#/components/schemas/Problem'
          description: The request does not match the contract.
      security:
        - sourceKey: []
        - personToken: []
components:
  schemas:
    ReviewRequestCreate:
      additionalProperties: false
      description: >-
        A request to review an automated decision, sent to the controller's data
        protection officer.
      properties:
        decision_receipt_id:
          anyOf:
            - format: uuid
              type: string
            - type: 'null'
          description: The receipt of the decision; absent, the subject's recent decisions.
          title: Decision Receipt Id
        reason:
          maxLength: 500
          minLength: 1
          title: Reason
          type: string
      required:
        - reason
      title: ReviewRequestCreate
      type: object
    ReviewRequest:
      additionalProperties: false
      properties:
        created_at:
          format: date-time
          title: Created At
          type: string
        decision_receipt_id:
          anyOf:
            - format: uuid
              type: string
            - type: 'null'
          title: Decision Receipt Id
        explanation:
          additionalProperties: true
          description: >-
            Built from receipts: their ids, kinds, surfaces, rules, versions and
            inputs by reference, never personal content.
          title: Explanation
          type: object
        outcome:
          anyOf:
            - enum:
                - upheld
                - reversed
                - corrected
              type: string
            - type: 'null'
          title: Outcome
        profile_id:
          maxLength: 512
          minLength: 1
          title: Profile Id
          type: string
        reason:
          anyOf:
            - type: string
            - type: 'null'
          title: Reason
        request_id:
          maxLength: 512
          minLength: 1
          title: Request Id
          type: string
        resolution:
          anyOf:
            - type: string
            - type: 'null'
          description: The reviewer's note.
          title: Resolution
        resolved_at:
          anyOf:
            - format: date-time
              type: string
            - type: 'null'
          title: Resolved At
        status:
          enum:
            - open
            - resolved
          title: Status
          type: string
      required:
        - request_id
        - profile_id
        - status
        - created_at
      title: ReviewRequest
      type: object
    Problem:
      additionalProperties: false
      description: RFC 9457 problem details; `code` comes from the versioned error catalog.
      properties:
        code:
          title: Code
          type: string
        detail:
          anyOf:
            - type: string
            - type: 'null'
          default: null
          title: Detail
        request_id:
          anyOf:
            - type: string
            - type: 'null'
          default: null
          title: Request Id
        status:
          title: Status
          type: integer
        title:
          title: Title
          type: string
        type:
          default: about:blank
          title: Type
          type: string
      required:
        - title
        - status
        - code
      title: Problem
      type: object
  securitySchemes:
    sourceKey:
      type: http
      scheme: bearer
      description: nia_sk_...
    personToken:
      type: http
      scheme: bearer
      bearerFormat: JWT

````