Hashboard Permissions Reference
Permission | Description |
---|---|
APPLY_DRAFT | Can apply a Project Draft |
CREATE_COLOR_PALETTE | Can create new Color Palettes |
CREATE_COLLECTION | Can create new Collections |
CREATE_DASHBOARD | Can create new Dashboards |
CREATE_DATA_CONNECTION | Can create new Data sources |
CREATE_DATA_MODEL | Can create new Data Models. This permission allows for arbitrary SQL execution. |
CREATE_DATA_MODEL_REPO_BUILD | Can preview and deploy changes via code using the CLI and Git integrations. Individual resource changes still require the appropriate CREATE / UPDATE / DELETE permissions. |
CREATE_DRAFT | Can create a Project Draft |
CREATE_EMAIL_REPORT | Can send one-time e-mail reports |
CREATE_EMAIL_REPORT_SCHEDULE | Can create schedules for automated e-mail reports |
CREATE_SLACK_REPORT | Can send one-time slack reports |
CREATE_SLACK_REPORT_SCHEDULE | Can create schedules for automated slack reports |
CREATE_GOOGLE_SHEETS_REPORT | Can send one-time Google Sheets reports |
CREATE_GOOGLE_SHEETS_REPORT_SCHEDULE | Can create schedules for automated Google Sheets reports |
CREATE_METRIC | Can create new Metrics |
CREATE_OR_UPDATE_ADHOC_MODEL_COLUMNS | Can create or update adhoc Attributes and Measures in an Exploration. This permission allows for arbitrary SQL execution. |
CREATE_PARTNER_PROJECT | Can create and see metadata about Partner Projects |
CREATE_ROLE | Can create new Roles |
CREATE_SAVED_VIEW | Can create new Saved Explorations |
CREATE_USER | Can add new users to the Project, and can update global Project settings: Project access domains, Project invite URL, Default first day of week, Weekly granularity display |
DELETE_COLLECTION | Can delete Collections |
DELETE_DASHBOARD | Can trash and delete Dashboards |
DELETE_DATA_CONNECTION | Can delete Data sources |
DELETE_DATA_FILE | Can delete uploaded data files |
DELETE_DATA_MODEL | Can trash and delete Data Models. This permission can be scoped to specific Data Models. |
DELETE_DATA_MODEL_REPO | Can delete the Project's git integration configuration |
DELETE_DRAFT | Can delete a Project Draft |
DELETE_EMAIL_REPORT_SCHEDULE | Can delete an e-mail report schedule |
DELETE_SLACK_REPORT_SCHEDULE | Can delete a slack report schedule |
DELETE_GOOGLE_SHEETS_REPORT_SCHEDULE | Can delete a Google Sheets report schedule |
DELETE_METRIC | Can trash and delete Metrics |
DELETE_ROLE | Can delete a Role |
DELETE_SAVED_VIEW | Can trash and delete Saved Explorations |
DELETE_USER | Can remove any User from the Project |
READ_AGGREGATED_DATA | Can see aggregated data from any accessible Data Model |
MANAGE_SLACK_INTEGRATION | Can manage the Project's Slack integration. |
READ_COLLECTION | Can see Collections |
READ_DASHBOARD | Can see Dashboards. Data access is controlled by access to the underlying Data Model. |
READ_DATA_CONNECTION | Can see the list of Data sources and can see the list of tables and columns inside each data source. |
READ_DATA_MODEL | Controls access to Data Models and all downstream resources that depend on them. This permission can be scoped to grant access to only specific Data Models. |
READ_DATA_MODEL_REPO | This permission is deprecated and is no longer used. |
READ_DATA_MODEL_REPO_BUILD | Can see metadata for all Data Ops preview and deploy builds |
READ_METRIC | Can see Metric metadata. Data access is controlled by access to the underlying Data Model. |
READ_RAW_DATA | Can see the underlying data of any accessible Data Models |
READ_ROLE | Can list and see the metadata for every Role in the Project. This permission is also required to change any Data source that has role-based credentials configured. |
READ_SAVED_VIEW | Can see Saved Exploration metadata |
READ_SQL_RUNNER | Can run arbitrary SQL against the Project's Data sources |
READ_USER | This permission is deprecated and is no longer used. |
UPDATE_AUTO_TRASHING | Can update Auto Archive settings |
UPDATE_COLLECTION | Can update Collection metadata and add resources to Collections |
UPDATE_COLOR_PALETTE | Can update Color Palettes |
UPDATE_DASHBOARD | Can update Dashboards |
UPDATE_DATA_CONNECTION | Can update Data source configuration |
UPDATE_DATA_MODEL | Can update Data Models. This permission can be scoped to specific Data Models. |
UPDATE_DATA_MODEL_REPO | Can update the Project's git integration configuration |
UPDATE_DRAFT | Can update a Project Draft |
UPDATE_EMAIL_REPORT_SCHEDULE | Can update a scheduled e-mail report |
UPDATE_SLACK_REPORT_SCHEDULE | Can update a scheduled slack report |
UPDATE_GOOGLE_SHEETS_REPORT_SCHEDULE | Can update a scheduled Google Sheets report |
UPDATE_METRIC | Can update a Metric |
UPDATE_PROJECT_BRANDING | Can change the Project's name and homepage |
UPDATE_PROJECT_DEFAULT_COLOR_PALETTE | Can change the Project's default color palette |
UPDATE_PUBLIC_SHARING | Can enable and disable whether a resource is shared publicly |
UPDATE_ROLE | Can change all Roles. This permission is also required to change any Data source that has role-based credentials configured. |
UPDATE_SAVED_VIEW | Can change all Saved Explorations |
UPDATE_USER | Can change all User's names and Roles |
UPLOAD_DATA_FILE | Can upload data files |
VIEW_DATA_EXPLORER | Can start a new exploration from a data model, saved exploration or dashboard in the Hashboard UI. 1 |
VIEW_DATA_DOWNLOAD_BUTTONS_IN_UI | Can download chart and underlying data from models, saved explorations and dashboards in the Hashboard UI. 1 |
VIEW_IMAGE_DOWNLOAD_BUTTONS_IN_UI | Can download chart images from models and saved explorations in the Hashboard UI. 1 |