Skip to main content

Permissions and Access Control

Insights provides a flexible permission system that helps you control who can access data, reports, dashboards, and other resources. Access is managed through a combination of application roles, teams, and optional row-level security, allowing organizations to securely share data with the right users.

Note

You must have the Insights Admin role to configure permissions, manage teams, and set up row-level security.

Access Control Levels

Insights provides three layers of access control, each serving a different purpose.

  1. Application-Level Access
    Controls access to the Insights application using built-in roles such as Insights Admin and Insights User.
  2. Resource-Level Access
    Controls which teams can access resources such as data sources, tables, queries, charts, dashboards, and workbooks.
  3. Row-Level Security
    Restricts which records users can view within a table by applying filters. For example, a salesperson can be limited to viewing only customers assigned to them.
How Permissions Work

Permissions build upon each other. Users first receive access through their application role, then inherit permissions from their assigned teams, and finally any configured row-level filters are applied to the data they can view.

Permission Hierarchy

User
   ↓
Team(s)
   ↓
Resources (Data Sources, Tables, Queries, Charts, Dashboards)
   ↓
Row-Level Filters

How the Permission Model Works

  • Users can belong to one or more teams.
  • Teams are granted access to specific resources.
  • Resources can optionally have row-level filters to restrict visible records.
  • Users automatically inherit permissions from every team they belong to.
Best Practice

Assign permissions to teams instead of individual users whenever possible. This makes access management simpler as users join, leave, or change roles within your organization.

Rating: 0 / 5 (0 votes)