# Account: Decide a runner installation request Contract status: **human-session only**. Launch state: **Live**. Records approval or denial for the exact displayed review hash under the current owner or admin session. Site rechecks current tenant, member and registration authority before recording a new decision. Approval permits the originating enrollment request to continue; it does not return credentials or prove installation. Operation ID: `resolveHumanRunnerEnrollmentReview` Method and path: `POST /api/account/agent-security/runner-enrollments/{reviewRef}/decision` Domain owner: `account` Authentication class: **human session** Required scope: `human session` Idempotency required: **yes** Availability in the generated contract: **available** Reason code: `human_session_only` The route is implemented. Availability is account-specific and can change after this document is fetched. This endpoint uses the signed-in human web session. An agent bearer token cannot call it. Request schema: `resolveHumanRunnerEnrollmentReview.request.v1`. Response schema: `resolveHumanRunnerEnrollmentReview.response.v1`. ## Transport projections - REST: **implemented** at `https://neotask.ai/api/account`. - MCP: **not_exposed** (reason `human_session_only`). - CLI: **not_exposed** (reason `human_session_only`). Read [authenticated capabilities](https://neotask.ai/api/agent/v1/capabilities) before using this operation.