Feature Request: Granular Access Control for System Vault (Non-Admin Script Editing)

Feature Request: Granular Access Control for System Vault (Non-Admin Script Editing)

1 vote

avatar

Hello,

I would like to request a feature that allows granting non-administrative users access to the System Vault with permissions to view, create, and edit scripts.

Current Limitation:
At the moment, access to the System Vault is restricted to administrators. This forces us to elevate users (e.g., editors or script maintainers) to administrator roles just so they can manage scripts.

Problem:
Promoting users to administrators solely for script management introduces unnecessary security risks and violates the principle of least privilege. These users do not require full administrative rights, only limited access to specific resources (in this case, scripts within the System Vault).

Requested Enhancement:

  • Introduce granular permission controls for the System Vault
  • Allow delegation of script-related permissions (view/edit/create) to non-admin roles
  • Ensure these permissions can be assigned independently of full administrative privileges


Benefits:

  • Improved security through proper role separation
  • Reduced risk of privilege misuse
  • Better alignment with enterprise access control best practices


Thank you for considering this request.

Benjamin Strohmaier

All Comments (1)

avatar

Hi Benjamin,

We are currently working on a new set of granular permissions, including permissions for the system vault.
The new permissions system will not be in the next release, but it should be available in 2026.3.

Regards,
David

David Savard