Permission Reference

This page defines every permission available in ADOC, organized by category, along with the actions each permission controls. For an overview of how roles and permissions work, and the built-in roles available by default, see Roles and Permissions.

Permission actions

Most permissions expose one or more of the following actions. Where a permission's behavior differs from these standard definitions, or has a dependency on another permission, it's called out individually below.

Action

Meaning

Create

Add a new instance of the item.

View

See existing instances of the item.

Modify

Edit an existing instance of the item.

Delete

Remove an existing instance of the item.

Execute

Manually run an existing item.


Tenant Roles

Tenant Roles apply platform-wide (RBAC). The permissions below are grouped into the same six categories used when creating a Tenant Role.

Administration

Permission

Description

Actions Available

API Keys

View and manage platform users' API keys.

Modify, View

Account Configuration

Manage SSO integration for the Acceldata platform.

Create, Modify, View

Billing

Permission for the billing feature.

Create, Modify, View

Service User Management

Create and manage service users.

Create, Modify, View

User Management

Create and manage users, user groups, and roles.

Create, Delete, Modify, View

Alerts

Permission

Description

Actions Available

Alerts

Manage alerts.

Modify, View

Compute

Permission

Description

Actions Available

Recommendations

Execute recommendations on the Acceldata platform.

Create, Modify, View

Chargeback

Create and manage budgets, organization units, and cost centers for Compute data sources.

Create, Modify, View

Compute Monitor

Create and manage Compute monitors.

Create, Modify, View

General

Permission

Description

Actions Available

Import Config Management

Manage import configurations.

Create, Modify, View

Notification

Create and manage notification channels.

Create, Modify, View

Domains Management

Create and manage domains.

Create, Modify, View

Notification Integrations

Manage notification integrations.

Create, Modify, View

Data Source

Create and manage data sources.

Create, Modify, View

Export Config Management

Manage export configurations.

Create, Modify, View

Audit Logs

View audit logs.

View

Resource Groups Management

Create and manage resource groups.

Create, Modify, View

Pipeline

Permission

Description

Actions Available

Pipeline

Pipeline Observability–related permissions.

Create, Modify, View

Reliability

Permission

Description

Actions Available

Business Entities

Manage Business Entities/custom assets for Reliability.

Create, Modify, View

Policy Templates

Create and manage data policies and user-defined templates.

Create, Modify, View

Data Plane

Create and manage data planes.

Create, Modify, View

Asset Hierarchy

View the asset hierarchy.

View

Data Reliability Settings

Manage data protection and data persistence settings for Reliability.

Create, Modify, View

Tags

Manage tags for Reliability.

Create, Modify, View

Asset Lineage

View and manage asset lineage.

Create, Modify, View

Policy Groups

Create and manage policy groups.

Create, Modify, View

Protected Data

View sensitive or PII data for an asset.

View

Query Analyzer

Manage the Query Analyzer.

Create, Modify, View

Complete Data

View complete records for an asset.

View

Reliability Dashboard

View the Reliability dashboard.

View

Reliability Reports

Create reports for Reliability.

Create

KPI

Create and manage business KPI definitions and configuration.

Create, Modify, View

Jobs

Create and manage jobs.

Create, Modify, View

Bulk Policies

Create and manage bulk policy rules and rulesets. See Applying a Rule Set.

Create, Modify, View

Business Glossary

Create and manage the Business Glossary.

Create, Delete, Modify, View

Data Products

Create and manage Data Products.

Create, Delete, Modify, View

Domain Roles

Domain Roles apply within a specific domain (RBAM) and scope access to the resources — such as asset groups or report groups — assigned to that domain. The permissions below are grouped into the same three categories used when creating a Domain Role. See Domains and Authorization or how domain-scoped access works.

Asset Management

Permission

Description

Actions Available

Asset Management

Manage assets.

Modify, View

Asset Metadata

Manage asset metadata.

Create, Modify, View

Policies

Create and manage policies.

Create, Execute, Modify, View

Data Products

Manage data products.

Delete, Modify, View

Domain Management

Permission

Description

Actions Available

Manage Domain

Permission to manage a domain.

Modify, View

Report Management

Permission

Description

Actions Available

Report Management

Manage reports.

Modify, View