Role-based access control (RBAC)
We've excited to share the availability of fine-grained control over how team members access your account and its entities using a concept of role-based access control (RBAC).
As part of this functionality, Stigg offers 2 types of account-level roles:
1. Owner - can do everything in the account, including managing team members, billing and security settings.
2. Member - can view and manage environments they have been granted access to.
Access to environments is granted separately according to the environment type (production and non-production) and supports the following levels of access:
1. Full access - manage environments, product catalog, customers, subscriptions, and integrations.
2. Customer management - manage customers and subscriptions, all other entities are read-only.
3. Read-only - read-only access to all entities in Stigg.
4. No access - no visibility or access to this type of environments.
Account owners can define team member access upon invitation, as well as updating their details after they joined the account.
SSO natively integrates with Stigg's role-based access control (RBAC) capabilities. When SSO is enabled, team members that join the Stigg account are granted the default role and level of environment access, that are defined in the SSO configuration.
Role-base access control is included in the Scale plan. Without it, team members are granted an Owner role to the account and full access to all of its environments.
More details about role-based access control can be found here.