Discovery Role MappingΒΆ
Use this page to understand which Privacera Discovery roles have access to each UI component. This information helps you assign least-privilege permissions across your team.
Legend: β Operational Control β’ ποΈ Read-only β’ β Not available / Not applicable
Viewing the table
This table scrolls horizontally. Use the bottom scrollbar or swipe to view all columns.
| Component | ROLE_DISCOVERY_ALL | ROLE_DISCOVERY_STEWARDS | ROLE_DISCOVERY_GOVERNANCE | ROLE_DISCOVERY_READ | ROLE_DISCOVERY_READ_RESTRICTED | ROLE_DISCOVERY_SCAN |
|---|---|---|---|---|---|---|
| Dashboard | β | β | ποΈ | ποΈ | ποΈ | β |
| Data Sources | β | β (Cannot delete data sources) | ποΈ | ποΈ | ποΈ | β (Only inclusion and exclusion of resources) |
| Tags | β | β | ποΈ | ποΈ | ποΈ | β |
| Dictionary | β | β | ποΈ | ποΈ | ποΈ | β |
| Patterns | β | β | ποΈ | ποΈ | ποΈ | β |
| Models | β | β | ποΈ | ποΈ | ποΈ | β |
| Rules | β | β | ποΈ | ποΈ | ποΈ | β |
| Scan Setup | β | β | ποΈ | ποΈ | ποΈ | β |
| Scan Status | β | β | ποΈ | ποΈ | ποΈ | β |
| Credit Card Validator | β | β | ποΈ | ποΈ | ποΈ | β |
| Data Explorer | β | β (File Explorer unavailable) | ποΈ (File Explorer unavailable) | ποΈ | ποΈ | β |
| Classification | β | β | ποΈ | ποΈ | ποΈ (Sample data for tags/resources is not visible) | ποΈ (Tag/resource details are not visible) |
| Reviews | β | β | ποΈ | ποΈ | ποΈ | ποΈ |
| File Explorer | β | β | β | β | β | β |
| Alerts Dashboard | β | β | ποΈ | ποΈ | ποΈ | ποΈ |
| Data Zones Dashboard | β | β | ποΈ | ποΈ | ποΈ | β |
| Data Zones Movements | β | β | ποΈ | ποΈ | ποΈ | β |
| Data Zones | β | β (Cannot delete resources or policies) | ποΈ | ποΈ | ποΈ | ποΈ |
| Built-in Reports | β | β | ποΈ | ποΈ | ποΈ | β |
| Saved Reports | β | β | ποΈ | ποΈ | ποΈ | β |
| Offline Reports | β | β | ποΈ | ποΈ | ποΈ | β |
| Datasource Registration | β | β | ποΈ | ποΈ | ποΈ | β |
About roles and permissions
-
The columns list built-in Privacera Discovery roles. If you use custom roles, map their permissions to the closest built-in role.
-
Emoji meanings: ποΈ View-only access β’ β Create/Update/Delete and operational control β’ β Not available or not applicable
-
For full role definitions across the portal, see User Roles.
- Previous topic: Quick Start
- Connecting Data Sources