The following charts outline the security role required to perform an action on a OneCloud application object.

Object

Action

Role Required

API

Grant Access

Company Admin

API

Remove Access

Company Admin

Chain

View

Read

Chain

Execute

Execute

Chain

Enable / Disable

Execute

Chain

Copy

Create

Chain

Create

Create

Chain

Update

Write

Chain

Publish

Write

Chain

Promote

Write

(Source Environment),

Create

(Target Environment)

Chain

Revert

Write

Chain

Add / Remove Tag

Write

Chain

Delete

Admin

Chain

Convert to Template

Workspace Admin

Company

Enable Support User

Company Admin

Connection

View

Workspace Admin

Connection

Update

Workspace Admin

Connection

Create

Workspace Admin

Connection

Delete

Workspace Admin

Environment

View

Read

Environment

Create

Create

Environment

Update

Write

Environment

Delete

Admin

Runner

View

Workspace Admin / Group

Runner

Create

Workspace Admin / Group

Runner

Update

Workspace Admin / Group

Runner

Delete

Workspace Admin / Group

Template

(from your company)

Update

Workspace Admin

Template

(from your company)

Create

Workspace Admin

Template

(from your company)

Delete

Workspace Admin

Template

(from your company)

Convert to Chain

Workspace Admin

Template

(from your company)

Create / Update Folder

Workspace Admin

Template

(from partner company)

View

Read access

Template

(from partner company)

Update

N/A

Template

(from partner company)

Create

N/A

User

Invite (Create)

Company Admin / Company Security Admin

User

Remove (Delete)

Company Admin / Company Security Admin

User

Update Security Admin

Company Admin / Company Security Admin

User

Update Attributes

Company Admin

User Group

View

Company Admin / Workspace Security Admin

User Group

Create

Company Admin / Company Security Admin

User Group

Update / Invite Users

Company Admin / Company Security Admin

User Group

Delete

Company Admin / Company Security Admin

Workspace

View

Read

Workspace

Create

Company Admin / Company Security Admin

Workspace

Update

Write

Workspace

Delete

Workspace Admin

Workspace Resource

View

Read (Environment)

Workspace Resource

Update

Write (Environment)

Workspace Resource

Create

Create (Environment)

Workspace Resource

Delete

Admin (Environment)

Did this answer your question?