Permissions Reference

Updated 3 months ago by Rashmi Nanda Sahoo

This topic gives you details of the Harness Module Permissions and Default Roles and Resource Groups available in the Harness system.

In this topic:

Module Permissions

Platform

The following table lists permissions for Platform. To know more about Platforms, see Harness Platform.

Scope

Resource Type

Action

Account

Authentication Settings

  • View
  • Create/Edit
  • Delete

Account

Organizations

  • View
  • Create

Account/Org/Project

Connectors

  • View
  • Create/Edit
  • Delete
  • Access

Account/Org/Project

Secrets

  • View
  • Create/Edit
  • Delete
  • Access

Account/Org/Project

Delegates

  • View
  • Create/Edit
  • Delete
  • Approve
  • Reject

Account/Org/Project

Delegate Configurations

  • View
  • Create/Edit
  • Delete

Account/Org/Project

Users

  • View
  • Manage
  • Invite

Account/Org/Project

User Groups

  • View
  • Manage

Account/Org/Project

Roles

  • View
  • Create/Edit
  • Delete

Account/Org/Project

Resource Groups

  • View
  • Create/Edit
  • Delete

Account/Org/Project

Environments

  • View
  • Create/Edit
  • Delete
  • Access

Account/Org/Project

Services

  • View
  • Create/Edit
  • Delete
  • Access

Continuous Delivery (CD)

The following table lists permissions for Harness Continuous Delivery module. To know more, see Continuous Delivery.

Scope

Resource Type

Action

Project

Pipeline

  • View
  • Create/Edit
  • Delete
  • Execute

Project

Environments

  • View
  • Create/Edit
  • Delete
  • Access

Project

Services

  • View
  • Create/Edit
  • Delete
  • Access

Project

Delegate Configurations

  • View
  • Create/Edit
  • Delete

Project

Secrets

  • View
  • Create/Edit
  • Delete
  • Access

Project

Delegates

  • View
  • Create/Edit
  • Delete

Project

Connectors

  • View
  • Create/Edit
  • Delete
  • Access

Project

Feature Flags

  • Toggle
  • Edit
  • Delete

Project

Target Management

  • Edit
  • Delete

Continuous Integration (CI)

The following table lists permissions for Harness Continuous Integration module. To know more, see Continuous Integration.

Scope

Resource Type

Action

Project

Pipeline

  • View
  • Create/Edit
  • Delete
  • Execute

Project

Feature Flags

  • Toggle
  • Edit
  • Delete

Project

Target Management

  • Edit
  • Delete

Feature Flags (FF)

The following table lists permissions for Harness Feature Flags. To know more, see Feature Flags.

Scope

Resource Type

Action

Project

Features Flags

  • Toggle
  • Edit
  • Delete

Project

Target Management

  • Edit
  • Delete

Project

Environments

  • View
  • Create/Edit
  • Delete
  • Access

Default Resource Group

Harness includes a default Resource Group: All Resources at Account, Org, and Project level. It includes all the resources.

Default Roles

Each Harness account includes default Roles to help you organize your users. The following table describes the default Harness Roles.

Scope

Default Roles

Permissions

Account

Account Administrator

  • View/Create Organizations
  • View/Manage User Groups
  • View/Create/Edit/Delete Roles
  • View/Create/Edit/Delete Resource Groups
  • View/Manage/Invite Users
  • View/Create/Edit/Delete Authentication Settings
  • Toggle/Edit/Delete Feature Flags
  • Edit/Delete Target Management
  • View/Create/Edit/Delete/Access Environments
  • View/Create/Edit/Delete/Access Services
  • View/Create/Edit/Delete Delegate Configurations
  • View/Create/Edit/Delete/Access Secrets
  • View/Create/Edit/Delete Delegates
  • View/Create/Edit/Delete/Access Connectors

Account

Account Viewer

  • View Organizations
  • View User Groups
  • View Roles
  • View Resource Groups
  • View Users
  • View Authentication Settings
  • View Environments
  • View Services
  • View Delegate Configurations
  • View Secrets
  • View Delegates
  • View Connectors

Organization

Organization Admin

  • View/Create/Edit/Delete Organizations
  • View/Manage User Groups
  • View/Create/Edit/Delete Roles
  • View/Create/Edit/Delete Resource Groups
  • View/Create Projects
  • View/Manage/Invite Users
  • Toggle/Edit/Delete Feature Flags
  • Edit/Delete Target Management
  • View/Create/Edit/Delete/Access Environments
  • View/Create/Edit/Delete/Access Services
  • View/Create/Edit/Delete Delegate Configurations
  • View/Create/Edit/Delete/Access Secrets
  • View/Create/Edit/Delete Delegates
  • View/Create/Edit/Delete/Access Connectors

Organization

Organization Viewer

  • View Organizations
  • View User Groups
  • View Roles
  • View Resource Groups
  • View/Create Projects
  • View Users
  • View Environments
  • View Services
  • View Delegate Configurations
  • View Secrets
  • View DelegatesDelegates
  • View Connectors

Project

Project Admin

  • View/Manage User Groups
  • View/Create/Edit/Delete Roles
  • View/Create/Edit/Delete Resource Groups
  • View/Create/Edit/Delete Projects
  • View/Manage/Invite Users
  • View/Manage User Groups
  • View/Create/Edit/Delete/Access Environments
  • View/Create/Edit/Delete/Access Services
  • View/Create/Edit/Delete/Execute Pipelines
  • View/Create/Edit/Delete Delegate Configurations
  • View/Create/Edit/Delete/Access Secrets
  • View/Create/Edit/Delete Delegates
  • View/Create/Edit/Delete/Access Connectors

Project

Pipeline Executor

  • View User Groups
  • View Roles
  • View Resource Groups
  • View Projects
  • View Users
  • View/Access Environments
  • View/Access Services
  • View/Execute Pipelines
  • View/Access Secrets
  • View/Access Connectors

Project

Project Viewer

  • View User Groups
  • View Roles
  • View Resource Groups
  • View Projects
  • View Users
  • View User Groups
  • View Environments
  • View Services
  • View Pipelines
  • View Delegate Configurations
  • View Secrets
  • View Delegates
  • View Connectors


Please Provide Feedback