Use when
- A denied user can request access, switch accounts, ask an admin, join a group, or use a safe fallback to continue.
- The request or approval lifecycle matters after the initial permission denied state.
- The product can track access request status and return users to the original task after approval.
- Policy or ownership rules may require escalation, expiry, or a different requested role.