ReletRelet Docs

Users and Roles

Enforce role discipline and least-privilege controls across administrative workflows.

Access control quality determines how safely your teams can operate. Role assignment must be intentional, reviewable, and reversible.

Access governance goals

These goals define a healthy role model.

  1. Users only have permissions required for current responsibilities.
  2. Temporary access is time-bound and tracked.
  3. Access reviews are regular and evidence-backed.

Role assignment workflow

Use this flow whenever granting or changing access.

Assign base role based on documented responsibility.
Apply scoped exceptions only when required and approved.
Set review date for temporary or elevated access grants.
Revalidate role fit after onboarding, transfer, or offboarding events.

Governance controls

Apply these controls to prevent privilege creep.

  1. Revoke stale invitations and unused elevated accounts.
  2. Keep break-glass or emergency paths tightly controlled.
  3. Document owner and reason for every elevated grant.
  4. Verify changed users can perform required actions and nothing beyond scope.

Least privilege requirement

Do not assign broad admin access for short-term convenience. Temporary tasks must use temporary, scoped permissions.

Next steps

  1. Validate organization hygiene in Organizations.
  2. Validate capability impact in Subscriptions.
  3. Monitor access-related incidents in Monitoring.

Last updated on

On this page