Skip to main content

Permissions reference

Last updated on

This topic describes permissions relevant to RBAC in Harness. For API permissions, go to the API permissions reference.

Types of permission

Types of permission:

StatusDescription
EXPERIMENTALAvailable for role assignment but RBAC will not be enforced, that is the access checks always return true.
ACTIVEAvailable for role assignment with RBAC enforced.
DEPRECATEDAvailable for role assignment with RBAC enforced but the permission will be moved to the INACTIVE state after some time.

This reference lists permissions that are available for role assignment. The Status column shows a resource's primary status; when an individual permission has a different status, it is annotated inline after its identifier (for example, gitops_application_exec, Experimental).

Administrative Functions

ResourcePermissionsStatus
Access Policies
  • Analyze (core_accessPolicies_analyze)
Active
Account ManagementAvailable at the account scope only.
  • Create / Edit (core_account_edit)
  • View (core_account_view)
Active
Account Settings
  • View (core_setting_view)
  • Create / Edit (core_setting_edit)
Active
AuditAvailable at the account and org scopes only.
  • View (core_audit_view)
Active
Authentication SettingsAvailable at the account scope only.
  • View (core_authsetting_view)
  • Create / Edit (core_authsetting_edit)
  • Delete (core_authsetting_delete)
Active
BannersAvailable at the account scope only.
  • View (core_banner_view)
  • Create / Edit (core_banner_edit)
  • Delete (core_banner_delete)
Active
BrandingAvailable at the account scope only.
  • Edit (core_branding_edit)
Active
Certificates
  • View (core_certificate_view)
  • Create / Edit (core_certificate_edit)
  • Delete (core_certificate_delete)
Active
Data SinkAvailable at the account scope only.
  • View (core_dataSink_view)
  • Create / Edit (core_dataSink_edit)
  • Create (core_dataSink_create)
  • Delete (core_dataSink_delete)
Active
Delegate Transaction Queue
  • View (core_delegatetransactionqueue_view)
  • Manage (core_delegatetransactionqueue_manage)
Active
Deployment Freeze
  • Manage (core_deploymentfreeze_manage)
  • Override (core_deploymentfreeze_override)
  • Global (core_deploymentfreeze_global)
Active
LicensesAvailable at the account scope only.
  • View (core_license_view)
  • Create / Edit (core_license_edit)
Active
OIDC ID Token
  • Create (core_oidcIdToken_create)
Active
OrganizationsAvailable at the account and org scopes only.
  • Delete (core_organization_delete)
  • View (core_organization_view)
  • Edit (core_organization_edit)
  • Create (core_organization_create)
Active
Platform Alert SettingsAvailable at the account scope only.
  • View (core_alertSetting_view)
  • Edit (core_alertSetting_edit)
Active
Projects
  • Delete (core_project_delete)
  • View (core_project_view)
  • Edit (core_project_edit)
  • Create (core_project_create)
  • Move (core_project_move)
Active
ProvidersAvailable at the account scope only.
  • View (core_provider_view)
  • Create / Edit (core_provider_edit)
  • Delete (core_provider_delete)
Active
Resource Groups
  • View (core_resourcegroup_view)
  • Create / Edit (core_resourcegroup_edit)
  • Delete (core_resourcegroup_delete)
Active
Roles
  • View (core_role_view)
  • Create / Edit (core_role_edit)
  • Delete (core_role_delete)
Active
SMTP ConfigurationAvailable at the account scope only.
  • View (core_smtp_view)
  • Create / Edit (core_smtp_edit)
  • Delete (core_smtp_delete)
Active
Service Accounts
  • View (core_serviceaccount_view)
  • List (core_serviceaccount_list)
  • Create / Edit (core_serviceaccount_edit)
  • Delete (core_serviceaccount_delete)
  • Manage (core_serviceaccount_manageapikey)
Active
Streaming DestinationAvailable at the account scope only.
  • View (core_streamingDestination_view)
  • Create / Edit (core_streamingDestination_edit)
  • Delete (core_streamingDestination_delete)
Active
User Groups
  • View (core_usergroup_view)
  • Manage (core_usergroup_manage)
  • Create (core_usergroup_create)
  • Edit Metadata (core_usergroup_editMetadata)
  • Delete (core_usergroup_delete)
  • Manage SSO (core_usergroup_manageSSO)
  • Manage SCIM (core_usergroup_manageSCIM)
  • Manage Members (core_usergroup_manageUsers)
  • Manage Notifications (core_usergroup_manageNotifications)
  • Manage Roles (core_usergroup_manageRoleAssignments)
Active
Users
  • View (core_user_view)
  • Manage (core_user_manage)
  • Invite (core_user_invite)
  • Impersonate (core_user_impersonate)
Active

Monitoring

ResourcePermissionsStatus
Monitoring Agents
  • Edit (monitoring_monitoringagent_edit)
  • Delete (monitoring_monitoringagent_delete)
  • View (monitoring_monitoringagent_view)
  • Create (monitoring_monitoringagent_create)
Experimental
Service Level Objectives
  • Edit (iro_iromanager_edit)
  • Delete (iro_iromanager_delete)
  • View (iro_iromanager_view)
  • Create (iro_iromanager_create)
Active

Environment Groups

ResourcePermissionsStatus
Environment Groups
  • View (core_environmentgroup_view)
  • Create / Edit (core_environmentgroup_edit)
  • Delete (core_environmentgroup_delete)
  • Access (core_environmentgroup_access)
Active

Environments

ResourcePermissionsStatus
Environments
  • View (core_environment_view)
  • Create / Edit (core_environment_edit)
  • Delete (core_environment_delete)
  • Access (core_environment_access)
  • Rollback Label (core_environment_rollback)
Active

Pipelines

ResourcePermissionsStatus
Pipelines
  • View (core_pipeline_view)
  • Edit (core_pipeline_edit)
  • Delete (core_pipeline_delete)
  • Execute (core_pipeline_execute)
  • Abort (core_pipeline_abort)
  • Create (core_pipeline_create)
Active
Releases
  • View (core_releases_view)
  • Create (core_releases_create)
  • Edit (core_releases_edit)
  • Delete (core_releases_delete)
  • Execute (core_releases_execute)
Active

Services

ResourcePermissionsStatus
Services
  • View (core_service_view)
  • Create / Edit (core_service_edit)
  • Delete (core_service_delete)
  • Access (core_service_access)
Active

Shared Resources

ResourcePermissionsStatus
Connectors
  • Access (core_connector_access)
  • View (core_connector_view)
  • Create / Edit (core_connector_edit)
  • Delete (core_connector_delete)
Active
DashboardsAvailable at the account and org scopes only.
  • View (core_dashboards_view)
  • Create (core_dashboards_create)
  • Delete (core_dashboards_delete)
  • Edit (core_dashboards_edit)
Active
Delegate Configurations
  • View (core_delegateconfiguration_view)
  • Create / Edit (core_delegateconfiguration_edit)
  • Delete (core_delegateconfiguration_delete)
Active
Delegates
  • View (core_delegate_view)
  • Create / Edit (core_delegate_edit)
  • Delete (core_delegate_delete)
Active
Files
  • View (core_file_view)
  • Create / Edit (core_file_edit)
  • Delete (core_file_delete)
  • Access (core_file_access)
Active
Secrets
  • Delete (core_secret_delete)
  • View (core_secret_view)
  • Create (core_secret_create)
  • Edit (core_secret_edit)
  • Access (core_secret_access)
Active
Templates
  • View (core_template_view)
  • Copy (core_template_copy)
  • Edit (core_template_edit)
  • Delete (core_template_delete)
  • Access (core_template_access)
  • Create (core_template_create)
Active
Variables
  • View (core_variable_view)
  • Create / Edit (core_variable_edit)
  • Delete (core_variable_delete)
Active

Policies

ResourcePermissionsStatus
Governance Policies
  • Create (core_governancePolicy_create)
  • Edit (core_governancePolicy_edit)
  • View (core_governancePolicy_view)
  • Delete (core_governancePolicy_delete)
Active
Governance Policy Sets
  • Create (core_governancePolicySets_create)
  • Edit (core_governancePolicySets_edit)
  • View (core_governancePolicySets_view)
  • Delete (core_governancePolicySets_delete)
  • Evaluate (core_governancePolicySets_evaluate)
Active

Discovery

ResourcePermissionsStatus
Network Map
  • Create (servicediscovery_networkmap_create)
  • Edit (servicediscovery_networkmap_edit)
  • Delete (servicediscovery_networkmap_delete)
  • View (servicediscovery_networkmap_view)
Active

Supply Chain Security

ResourcePermissionsStatus
Remediation Tracker
  • Create / Edit (ssca_remediationtracker_edit)
  • View (ssca_remediationtracker_view)
  • Close (ssca_remediationtracker_close)
Active
SCS Configuration
  • View (ssca_scsconfiguration_view)
  • Create (ssca_scsconfiguration_create)
  • Edit (ssca_scsconfiguration_edit)
Active
SCS Evidence Vault
  • View (ssca_scsevidencevault_view)
  • Download (ssca_scsevidencevault_download)
  • Upload (ssca_scsevidencevault_upload)
Active
SCS External Ticket
  • View (ssca_scsexternalticket_view)
  • Create (ssca_scsexternalticket_create)
  • Edit (ssca_scsexternalticket_edit)
Active
SCS Integration
  • View (ssca_scsintegration_view)
  • Create (ssca_scsintegration_create)
  • Edit (ssca_scsintegration_edit)
  • Delete (ssca_scsintegration_delete)
Active
SCS Pull Request
  • View (ssca_scsprcreation_view)
  • Create (ssca_scsprcreation_create)
  • Edit (ssca_scsprcreation_edit)
Active

Webhooks

ResourcePermissionsStatus
Webhooks
  • Create / Edit (core_gitxWebhooks_edit)
  • Delete (core_gitxWebhooks_delete)
  • View (core_gitxWebhooks_view)
Active

Notifications

ResourcePermissionsStatus
Default Notification Template Set
  • View (core_defaultNotificationTemplateSet_view)
  • Create / Edit (core_defaultNotificationTemplateSet_edit)
  • Delete (core_defaultNotificationTemplateSet_delete)
Active
Legacy Notifications
  • View (core_notification_view)
  • Create / Edit (core_notification_edit)
  • Delete (core_notification_delete)
Deprecated
Notification Channels
  • View (core_notificationchannel_view)
  • Create / Edit (core_notificationchannel_edit)
  • Delete (core_notificationchannel_delete)
Active
Notification Rules
  • View (core_notificationrule_view)
  • Create / Edit (core_notificationrule_edit)
  • Delete (core_notificationrule_delete)
Active

Input Sets

ResourcePermissionsStatus
Input Sets
  • Create / Edit (core_inputset_edit)
  • Delete (core_inputset_delete)
  • View (core_inputset_view)
Active

Module-specific permissions

Chaos Engineering

ResourcePermissionsStatus
Chaos Action
  • View (chaos_chaosaction_view)
  • Create / Edit (chaos_chaosaction_edit)
  • Delete (chaos_chaosaction_delete)
Active
Chaos Environment
  • Execute Chaos Experiment (chaos_environment_executeChaosExperiment)
Active
Chaos Experiment
  • View (chaos_chaosexperiment_view)
  • Create / Edit (chaos_chaosexperiment_edit)
  • Delete (chaos_chaosexperiment_delete)
  • Execute (chaos_chaosexperiment_execute)
Active
Chaos Fault
  • View (chaos_chaosfault_view)
  • Create / Edit (chaos_chaosfault_edit)
  • Delete (chaos_chaosfault_delete)
Active
Chaos Gameday
  • View (chaos_chaosgameday_view)
  • Create / Edit (chaos_chaosgameday_edit)
  • Delete (chaos_chaosgameday_delete)
  • Execute (chaos_chaosgameday_execute)
Active
Chaos Hub
  • View (chaos_chaoshub_view)
  • Create / Edit (chaos_chaoshub_edit)
  • Delete (chaos_chaoshub_delete)
  • Access (chaos_chaoshub_access)
  • Manage (chaos_chaoshub_manage)
Active
Chaos Image Registry
  • View (chaos_chaosimageregistry_view)
  • Create / Edit (chaos_chaosimageregistry_edit)
Active
Chaos Infrastructure
  • View (chaos_chaosinfrastructure_view)
  • Create / Edit (chaos_chaosinfrastructure_edit)
  • Delete (chaos_chaosinfrastructure_delete)
Active
Chaos Probe
  • View (chaos_chaosprobe_view)
  • Create / Edit (chaos_chaosprobe_edit)
  • Delete (chaos_chaosprobe_delete)
  • Verify (chaos_chaosprobe_verify)
Active
Chaos Security Governance
  • Create / Edit (chaos_chaossecuritygovernance_edit)
  • Delete (chaos_chaossecuritygovernance_delete)
  • View (chaos_chaossecuritygovernance_view)
Active
DR Test
  • View (chaos_drtest_view)
  • Create / Edit (chaos_drtest_edit)
  • Delete (chaos_drtest_delete)
Experimental

Cloud Cost Management

ResourcePermissionsStatus
AnomaliesAvailable at the account scope only.
  • View (ccm_anomalies_view)
  • Manage (ccm_anomalies_manage)
Active
Anomalies Ignore List RulesAvailable at the account scope only.
  • View (ccm_anomaliesWhitelistRule_view)
  • Manage (ccm_anomaliesWhitelistRule_manage)
Active
AutoStopping RulesAvailable at the account scope only.
  • View (ccm_autoStoppingRule_view)
  • Create / Edit (ccm_autoStoppingRule_edit)
  • Delete (ccm_autoStoppingRule_delete)
Active
BudgetsAvailable at the account scope only.
  • View (ccm_budget_view)
  • Create / Edit (ccm_budget_edit)
  • Delete (ccm_budget_delete)
Active
Cloud Asset Governance AlertAvailable at the account scope only.
  • Create / Edit (ccm_cloudAssetGovernanceAlert_edit)
  • View (ccm_cloudAssetGovernanceAlert_view)
  • Delete (ccm_cloudAssetGovernanceAlert_delete)
Active
Cloud Asset Governance EnforcementAvailable at the account scope only.
  • Create / Edit (ccm_cloudAssetGovernanceEnforcement_edit)
  • View (ccm_cloudAssetGovernanceEnforcement_view)
  • Delete (ccm_cloudAssetGovernanceEnforcement_delete)
Active
Cloud Asset Governance OverviewAvailable at the account scope only.
  • View (ccm_cloudAssetGovernanceOverview_view)
Active
Cloud Asset Governance RuleAvailable at the account scope only.
  • Create / Edit (ccm_cloudAssetGovernanceRule_edit)
  • View (ccm_cloudAssetGovernanceRule_view)
  • Delete (ccm_cloudAssetGovernanceRule_delete)
  • Execute (ccm_cloudAssetGovernanceRule_execute)
  • Dry Execute (ccm_cloudAssetGovernanceRule_dryExecute)
Active
Cloud Asset Governance Rule SetAvailable at the account scope only.
  • Create / Edit (ccm_cloudAssetGovernanceRuleSet_edit)
  • View (ccm_cloudAssetGovernanceRuleSet_view)
  • Delete (ccm_cloudAssetGovernanceRuleSet_delete)
Active
Cluster OrchestratorAvailable at the account scope only.
  • Create / Edit (ccm_clusterOrchestrator_edit)
  • View (ccm_clusterOrchestrator_view)
Active
Commitment OrchestratorAvailable at the account scope only.
  • Create / Edit (ccm_commitmentOrchestrator_edit)
  • View (ccm_commitmentOrchestrator_view)
Active
Cost CategoriesAvailable at the account scope only.
  • View (ccm_costCategory_view)
  • Create / Edit (ccm_costCategory_edit)
  • Delete (ccm_costCategory_delete)
Active
Currency PreferencesAvailable at the account scope only.
  • View (ccm_currencyPreference_view)
  • Create / Edit (ccm_currencyPreference_edit)
Active
Data Job StatusAvailable at the account scope only.
  • View (ccm_dataJobStatus_view)
Active
Data ScopeAvailable at the account scope only.
  • View (ccm_dataScope_view)
Active
FoldersAvailable at the account scope only.
  • View (ccm_folder_view)
  • Create / Edit (ccm_folder_edit)
  • Delete (ccm_folder_delete)
Active
Load BalancerAvailable at the account scope only.
  • View (ccm_loadBalancer_view)
  • Create / Edit (ccm_loadBalancer_edit)
  • Delete (ccm_loadBalancer_delete)
Active
OverviewAvailable at the account scope only.
  • View (ccm_overview_view)
Active
PerspectivesAvailable at the account scope only.
  • View (ccm_perspective_view)
  • Create / Edit (ccm_perspective_edit)
  • Delete (ccm_perspective_delete)
Active
RecommendationsAvailable at the account scope only.
  • View (ccm_recommendations_view)
  • Manage (ccm_recommendations_manage)
Active
Unit CostAvailable at the account scope only.
  • View (ccm_unitCost_view)
  • Create / Edit (ccm_unitCost_edit)
  • Delete (ccm_unitCost_delete)
Active

Cloud Development Environments

ResourcePermissionsStatus
Gitspace
  • Create (cde_gitspace_create)
  • View (cde_gitspace_view)
  • Execute (cde_gitspace_use)
  • Edit (cde_gitspace_edit)
  • Delete (cde_gitspace_delete)
Experimental
Infrastructure Provider
  • View (cde_infraprovider_view)
  • Edit (cde_infraprovider_edit)
  • Delete (cde_infraprovider_delete)
Experimental

Code Repository

ResourcePermissionsStatus
Repository
  • View (code_repo_view)
  • Review (code_repo_review)
  • Edit (code_repo_edit)
  • Create (code_repo_create)
  • Delete (code_repo_delete)
  • Push (code_repo_push)
  • Report Commit Check (code_repo_reportCommitCheck)
Active

Feature Flags

ResourcePermissionsStatus
Environment
  • Target Group Edit (ff_environment_targetGroupEdit)
  • API Key View (ff_environment_apiKeyView)
  • Create FF SDK Key (ff_environment_apiKeyCreate)
  • Delete FF SDK Key (ff_environment_apiKeyDelete)
  • Create / Edit (ff_environment_edit)
  • View (ff_environment_view)
Active
Feature Flag
  • Create (ff_featureflag_create)
  • Edit Config (ff_featureflag_configEdit)
  • Edit Rules (ff_featureflag_rulesEdit)
  • Create / Edit (ff_featureflag_edit)
  • Delete (ff_featureflag_delete)
  • View (ff_featureflag_view)
  • Toggle (ff_featureflag_toggle)
Active
Proxy API KeysAvailable at the account and org scopes only.
  • Create (ff_proxyapikey_create)
  • Edit (ff_proxyapikey_edit)
  • Delete (ff_proxyapikey_delete)
  • Rotate (ff_proxyapikey_rotate)
  • View (ff_proxyapikey_view)
Active
Target
  • View (ff_target_view)
Active
Target Management
  • View (ff_targetgroup_view)
  • Create / Edit (ff_targetgroup_edit)
  • Delete (ff_targetgroup_delete)
Active

GitOps

ResourcePermissionsStatus
Agents
  • View (gitops_agent_view)
  • Create / Edit (gitops_agent_edit)
  • Delete (gitops_agent_delete)
Active
Application Sets
  • View (gitops_applicationset_view)
  • Create / Edit (gitops_applicationset_edit)
  • Delete (gitops_applicationset_delete)
Active
Applications
  • View (gitops_application_view)
  • Create / Edit (gitops_application_edit)
  • Delete (gitops_application_delete)
  • Sync (gitops_application_sync)
  • Exec (gitops_application_exec), Experimental
  • Resource Action (gitops_application_resourceaction), Experimental
Active
Argo Project
  • View (gitops_argoproject_view)
  • Create / Edit (gitops_argoproject_edit)
  • Delete (gitops_argoproject_delete)
Active
Certificates
  • View (gitops_cert_view)
  • Create / Edit (gitops_cert_edit)
  • Delete (gitops_cert_delete)
Active
Clusters
  • View (gitops_cluster_view)
  • Create / Edit (gitops_cluster_edit)
  • Delete (gitops_cluster_delete)
Active
Repositories
  • View (gitops_repository_view)
  • Create / Edit (gitops_repository_edit)
  • Delete (gitops_repository_delete)
Active
Repository Certificates
  • View (gitops_gpgkey_view)
  • Create / Edit (gitops_gpgkey_edit)
  • Delete (gitops_gpgkey_delete)
Active

Infrastructure as Code

ResourcePermissionsStatus
IACM Inventory
  • View (iac_inventory_view)
  • Create / Edit (iac_inventory_edit)
  • Delete (iac_inventory_delete)
  • Edit Var (iac_inventory_editvariable)
  • Delete Var (iac_inventory_deletevariable)
  • Approve (iac_inventory_approve)
Active
IACM Playbook
  • View (iac_playbook_view)
  • Create / Edit (iac_playbook_edit)
  • Delete (iac_playbook_delete)
  • Edit Var (iac_playbook_editvariable)
  • Delete Var (iac_playbook_deletevariable)
  • Approve (iac_playbook_approve)
Active
IACM Provider Registry
  • Create / Edit (iac_providerregistry_edit)
  • Delete (iac_providerregistry_delete)
  • View (iac_providerregistry_view)
Experimental
IACM Workspaces
  • View (iac_workspace_view)
  • Create / Edit (iac_workspace_edit)
  • Delete (iac_workspace_delete)
  • Edit Var (iac_workspace_editvariable)
  • Delete Var (iac_workspace_deletevariable)
  • Approve (iac_workspace_approve)
  • Workspace Access State (iac_workspace_accessstate)
  • Remote Plan (iac_workspace_executeremoteplan)
Active
Registry
  • Create / Edit (iac_registry_edit)
  • Delete (iac_registry_delete)
  • View (iac_registry_view)
Active
Variable Sets
  • View (iac_variableset_view)
  • Create / Edit (iac_variableset_edit)
  • Delete (iac_variableset_delete)
Experimental

Service Reliability

ResourcePermissionsStatus
Downtime
  • View (chi_downtime_view)
  • Create / Edit (chi_downtime_edit)
  • Delete (chi_downtime_delete)
Active
Monitored Services
  • View (chi_monitoredservice_view)
  • Create / Edit (chi_monitoredservice_edit)
  • Delete (chi_monitoredservice_delete)
  • Toggle (chi_monitoredservice_toggle)
Active
SLO
  • View (chi_slo_view)
  • Create / Edit (chi_slo_edit)
  • Delete (chi_slo_delete)
Active

Incident Response

ResourcePermissionsStatus
Alert
  • View (iro_alert_view)
  • Create / Edit (iro_alert_edit)
  • Configure (iro_alert_config)
Active
Alert Rule
  • Create (iro_alertrule_create)
  • Edit (iro_alertrule_edit)
  • Delete (iro_alertrule_delete)
Active
Escalation Policy
  • View (iro_iroescalationpolicy_view)
  • Create (iro_iroescalationpolicy_create)
  • Edit (iro_iroescalationpolicy_edit)
  • Delete (iro_iroescalationpolicy_delete)
Active
Incident
  • View (iro_incident_view)
  • Create / Edit (iro_incident_edit)
  • Configure (iro_incident_config)
  • Send Status Update (iro_incident_sendstatusupdate), Experimental
Active
Incident Response Access
  • Manage (iro_iroaccess_manage)
Active
Incident Response Integration
  • View (iro_irointegration_view)
  • Create (iro_irointegration_create)
  • Edit (iro_irointegration_edit)
  • Delete (iro_irointegration_delete)
Active
Incident Response Workspace
  • Configure (iro_iroworkspace_config)
Active
Metric Source
  • Edit (iro_metricsource_edit)
  • Delete (iro_metricsource_delete)
  • View (iro_metricsource_view)
  • Create (iro_metricsource_create)
Active
On-Call Schedule
  • View (iro_iroschedule_view)
  • Create (iro_iroschedule_create)
  • Edit (iro_iroschedule_edit)
  • Delete (iro_iroschedule_delete)
Active
On-Call Schedule Override
  • View (iro_iroscheduleoverride_view)
  • Create (iro_iroscheduleoverride_create)
  • Edit (iro_iroscheduleoverride_edit)
  • Delete (iro_iroscheduleoverride_delete)
Active
Runbook
  • View (iro_runbook_view)
  • Edit (iro_runbook_edit)
  • Delete (iro_runbook_delete)
  • Trigger (iro_runbook_trigger)
Active
Service Directory
  • View (iro_servicedirectory_view)
  • Edit (iro_servicedirectory_edit)
  • Delete (iro_servicedirectory_delete)
  • Manage Subscriptions (iro_servicedirectory_managesubscriptions)
Experimental
Third-Party Integrations
  • View (iro_thirdpartyintegrations_view)
  • Edit (iro_thirdpartyintegrations_edit)
  • Delete (iro_thirdpartyintegrations_delete)
Experimental

Security Tests

ResourcePermissionsStatus
Exemptions
  • View (sto_exemption_view)
  • Create / Edit (sto_exemption_create)
  • Approve / Reject (sto_exemption_approve)
Active
External Tickets
  • View (sto_ticket_view)
  • Create / Edit (sto_ticket_edit)
  • Delete (sto_ticket_delete)
Active
Issues
  • View (sto_issue_view)
  • Create / Edit (sto_issue_edit)
Active
Scans
  • View (sto_scan_view)
  • Create / Edit (sto_scan_edit)
Active
Test Targets
  • View (sto_testtarget_view)
  • Create / Edit (sto_testtarget_edit)
  • Approve / Reject (sto_testtarget_approve)
Active

Internal Developer Portal

ResourcePermissionsStatus
Advanced Configurations
  • View (idp_advancedconfiguration_view)
  • Create / Edit (idp_advancedconfiguration_edit)
  • Delete (idp_advancedconfiguration_delete)
Active
Aggregation Rule
  • View (idp_aggregationrule_view)
  • Create (idp_aggregationrule_create)
  • Edit (idp_aggregationrule_edit)
  • Delete (idp_aggregationrule_delete)
  • Compute (idp_aggregationrule_compute)
Active
Catalog
  • View (idp_catalog_view)
  • Create / Edit (idp_catalog_edit)
  • Delete (idp_catalog_delete)
Active
Catalog Access Policies
  • View (idp_catalogaccesspolicy_view)
  • Create (idp_catalogaccesspolicy_create)
  • Edit (idp_catalogaccesspolicy_edit)
  • Delete (idp_catalogaccesspolicy_delete)
Active
Environment Blueprint
  • View (idp_environmentblueprint_view)
  • Create (idp_environmentblueprint_create)
  • Edit (idp_environmentblueprint_edit)
  • Delete (idp_environmentblueprint_delete)
Active
IDP Environment
  • View (idp_idpenvironment_view)
  • Create (idp_idpenvironment_create)
  • Edit (idp_idpenvironment_edit)
  • Delete (idp_idpenvironment_delete)
Active
IDP Module
  • Access (idp_module_access)
Active
IDP Team
  • View (idp_team_view)
  • Create / Edit (idp_team_edit)
  • Delete (idp_team_delete)
Active
Integrations
  • View (idp_integration_view)
  • Create (idp_integration_create)
  • Edit (idp_integration_edit)
  • Delete (idp_integration_delete)
Active
Layouts
  • View (idp_layout_view)
  • Create / Edit (idp_layout_edit)
Active
Plugins
  • View (idp_plugin_view)
  • Create / Edit (idp_plugin_edit)
  • Toggle (idp_plugin_toggle)
  • Delete (idp_plugin_delete)
Active
Scorecards
  • View (idp_scorecard_view)
  • Create / Edit (idp_scorecard_edit)
  • Delete (idp_scorecard_delete)
Active
Workflow
  • View (idp_workflow_view)
  • Create / Edit (idp_workflow_edit)
  • Delete (idp_workflow_delete)
  • Execute (idp_workflow_execute)
Active

Continuous Error Tracking

ResourcePermissionsStatus
Agents
  • View (cet_agents_view)
Active
Critical Events
  • View (cet_criticalevent_view)
  • Create / Edit (cet_criticalevent_create)
  • Delete (cet_criticalevent_delete)
Active
Tokens
  • View (cet_token_view)
  • Create / Edit (cet_token_create)
  • Revoke (cet_token_revoke)
Active

Database DevOps

ResourcePermissionsStatus
Instances
  • View (dbops_instance_view)
  • Create / Edit (dbops_instance_edit)
  • Delete (dbops_instance_delete)
Active
Schemas
  • View (dbops_schema_view)
  • Create / Edit (dbops_schema_edit)
  • Delete (dbops_schema_delete)
Active

Artifact Management

ResourcePermissionsStatus
Artifact Registry
  • View Registry (artifact_artregistry_view)
  • Edit Registry (artifact_artregistry_edit)
  • Delete Registry (artifact_artregistry_delete)
  • Upload (artifact_artregistry_uploadartifact)
  • Download (artifact_artregistry_downloadartifact)
  • Delete Artifact (artifact_artregistry_deleteartifact)
  • Quarantine Artifact (artifact_artregistry_quarantineartifact)
Active
Firewall Exceptions
  • Approve (artifact_firewallexceptions_approve)
Active

AI

ResourcePermissionsStatus
AI LLM Gateway
  • Access (ai_llmgateway_access)
Active
AI Rules
  • Create (ai_rules_create)
  • Edit (ai_rules_edit)
  • Delete (ai_rules_delete)
  • View (ai_rules_view)
Active
AI Worker Agent
  • View (ai_workeragent_view)
  • Create (ai_workeragent_create)
  • Edit (ai_workeragent_edit)
  • Delete (ai_workeragent_delete)
  • Execute (ai_workeragent_execute)
Active

AI DLC Insights

ResourcePermissionsStatus
AIDI Collections
  • Create (sei_seicollections_create)
  • View (sei_seicollections_view)
  • Edit (sei_seicollections_edit)
  • Delete (sei_seicollections_delete)
Active
AIDI Configuration SettingsAvailable at the account scope only.
  • Create (sei_seiconfigurationsettings_create)
  • View (sei_seiconfigurationsettings_view)
  • Edit (sei_seiconfigurationsettings_edit)
  • Delete (sei_seiconfigurationsettings_delete)
Active
AIDI Data SettingsAvailable at the account scope only.
  • View (sei_seidatasettings_view)
  • Edit (sei_seidatasettings_edit)
  • Create (sei_seidatasettings_create)
  • Delete (sei_seidatasettings_delete)
Active
AIDI Insight Categories
  • View (sei_seiinsightscategory_view)
Active
AIDI Insights
  • Create (sei_seiinsights_create)
  • View (sei_seiinsights_view)
  • Edit (sei_seiinsights_edit)
  • Delete (sei_seiinsights_delete)
Active
AIDI ProfilesAvailable at the account scope only.
  • View (sei_seiprofiles_view)
  • Edit (sei_seiprofiles_edit)
  • Create (sei_seiprofiles_create)
  • Delete (sei_seiprofiles_delete)
Active
AIDI Studio
  • View (sei_seicanvas_view)
  • Create / Edit (sei_seicanvas_edit)
  • Create (sei_seicanvas_create)
  • Delete (sei_seicanvas_delete)
Active
AIDI Teams
  • View (sei_seiteams_view)
  • Edit (sei_seiteams_edit)
  • Create (sei_seiteams_create)
  • Delete (sei_seiteams_delete)
Active

Feature Management and Experimentation

ResourcePermissionsStatus
FME Environment
  • View (fme_fmeenvironment_view)
  • Edit (fme_fmeenvironment_edit)
  • Data Export View (fme_fmeenvironment_dataExportView)
  • Data Export Edit (fme_fmeenvironment_dataExportEdit)
  • SDK API Key View (fme_fmeenvironment_sdkApiKeyView)
  • SDK API Key Edit (fme_fmeenvironment_sdkApiKeyEdit)
Active
FME Experiment
  • View (fme_fmeexperiment_view)
  • Edit (fme_fmeexperiment_edit)
Active
FME Feature Flag
  • Archive (fme_fmefeatureflag_archive)
  • Unarchive (fme_fmefeatureflag_unarchive)
  • View (fme_fmefeatureflag_view)
  • Edit (fme_fmefeatureflag_edit)
  • Create (fme_fmefeatureflag_create), Experimental
  • Edit Flag (fme_fmefeatureflag_editFlag), Experimental
  • Edit Targeting (fme_fmefeatureflag_editTargeting), Experimental
  • Kill Switch (fme_fmefeatureflag_killSwitch), Experimental
  • Delete (fme_fmefeatureflag_delete), Experimental
Active
FME Metric
  • View (fme_fmemetric_view)
  • Edit (fme_fmemetric_edit)
Active
FME Segment
  • View (fme_fmesegment_view)
  • Edit (fme_fmesegment_edit)
Active
FME Traffic Type
  • View (fme_fmetraffictype_view)
  • Edit (fme_fmetraffictype_edit)
Active

Load Testing

ResourcePermissionsStatus
Load Test
  • View (load_loadtest_view)
  • Create / Edit (load_loadtest_edit)
  • Delete (load_loadtest_delete)
Active