RBAC: Only Tenant Owner and Level 3 May Manage Roles & Members
Only the tenant owner and users granted READ WRITE DELETE (level 3) RBAC privileges may create roles, add members, assign members to roles, and modify per-service permissions. Except for the tenant owner, users with level 3 privileges have full authority to manage access for members, roles, and services; grant level 3 access only after careful consideration. All other RBAC levels are currently restricted to prevent privilege escalation and to simplify adoption.
Huy Van
Founder