diff --git a/articles/role-based-access.md b/articles/role-based-access.md index e7132e3697..72e39c0bb1 100644 --- a/articles/role-based-access.md +++ b/articles/role-based-access.md @@ -64,7 +64,9 @@ GitOps is an API-only and write-only role that can be used on CI/CD pipelines. | Filter hosts using policies | ✅ | ✅ | ✅ | ✅ | | | Create, edit, and delete policies for all hosts | | | ✅ | ✅ | ✅ | | Create, edit, and delete policies for all hosts assigned to team\* | | | ✅ | ✅ | ✅ | -| Manage [policy automations](https://fleetdm.com/docs/using-fleet/automations#policy-automations) | | | | ✅ | ✅ | +| Edit global ("All teams") policy automations | | | | ✅ | ✅ | +| Edit team policy automations: calendar events, install software, and run script\* | | | ✅ | ✅ | ✅ | +| Edit team policy automations: other workflows (tickets and webhooks)\* | | | | ✅ | ✅ | | Create, edit, view, and delete users | | | | ✅ | | | Add and remove team users\* | | | | ✅ | ✅ | | Create, edit, and delete teams\* | | | | ✅ | ✅ | @@ -146,7 +148,8 @@ Users with access to multiple teams can be assigned different roles for each tea | Run global (inherited) policies as a live policy | | ✅ | ✅ | ✅ | | | Filter hosts using policies | ✅ | ✅ | ✅ | ✅ | | | Create, edit, and delete team policies | | | ✅ | ✅ | ✅ | -| Manage [policy automations](https://fleetdm.com/docs/using-fleet/automations#policy-automations) | | | | ✅ | ✅ | +| Edit team policy automations: calendar events, install software, and run script | | | ✅ | ✅ | ✅ | +| Edit team policy automations: other workflows (tickets and webhooks) | | | | ✅ | ✅ | | Add and remove team users | | | | ✅ | ✅ | | Edit team name | | | | ✅ | ✅ | | Create, edit, and delete [team enroll secrets](https://fleetdm.com/docs/using-fleet/rest-api#get-enroll-secrets-for-a-team) | | | ✅ | ✅ | | @@ -179,6 +182,6 @@ Users with access to multiple teams can be assigned different roles for each tea - +