Lewati ke konten utama

Permission Reference

Permission detail mengikuti backend contract, tetapi tenant perlu memahami prinsip umumnya.

Permission Group

GroupContoh permissionDipakai di
Scopescope.read, scope.update, scope.approveBCM-01
Stakeholderstakeholder.read, stakeholder.update, stakeholder.approveBCM-02
Product/factor/functionproduct.update, factor.update, function.approveBCM-03 sampai BCM-05
Compliancecompliance.update, compliance.approve, report.exportBCM-06, reports
RACI/strategyraci.update, strategy.approveBCM-07 sampai BCM-08
BIA/risk/scenariobia.update, risk.update, scenario.approveBCM-09 sampai BCM-11
BCP/crisisbcp.publish, crisis.dispatchBCM-12 sampai BCM-13
Assurancetraining.update, exercise.update, audit.closeBCM-14 sampai BCM-16
Governancertm.update, capa.close, vendor.updateBCM-17 sampai BCM-19
Incidentincident.activate, incident.update, notification.retryBCM-20
Documentsdocument.update, document.publish, document.downloadBCM-21
Audit/reportaudit_trail.read, report.export, audit_binder.generateBCM-22
Platform tenantintegration.update, knowledge.update, acl.manage, settings.updateBCM-23, Access Control, Settings

Rule of Thumb

  • Read-only role tidak boleh melihat create/edit/archive buttons.
  • Download evidence butuh read + download permission.
  • Export report butuh export permission.
  • Approval butuh role approver dan status workflow yang tepat.
  • Deactivate/reactivate user butuh ACL management permission.