Enable granular, role-based access control for the Policy Workbench and Policy Simulation Panel, allowing non-account (non-root) administrators to:
View policy sampling results on a per-policy basis
Access sampled input data (where permitted)
Have read-only access to the Policy Simulation Panel
Doc referenced:
https://docs.spacelift.io/concepts/policy#is-policy-sampling-safe
Introduce granular RBAC controls for policy-related tooling, such as:
Per-Policy Sampling Access
Ability to grant sampling visibility on a per-policy basis.
Scoped access tied to specific policies, stacks, or spaces (if applicable).
Read-Only Policy Simulation Access
Allow designated roles to:
View policy code
View simulation inputs and outputs
View sampling results
Without:
Editing policies
Modifying sampling settings
Gaining root-level privileges
Role-Based Controls
New permission(s), e.g.:
policy:read_simulation
policy:read_sampling
Assignable to custom roles.
Please authenticate to join the conversation.
β Rejected
π‘ Feature Requests
Access Control
1 day ago
Get notified by email when there are changes.
β Rejected
π‘ Feature Requests
Access Control
1 day ago
Get notified by email when there are changes.