Hi,
we are currently running into a limitation with permissions inside larger workspaces.
Our use case is a central Analytics workspace that contains many tables, Query Tables, reports and dashboards used by different teams. We would like to allow certain users to maintain specific Query Tables, including editing the SQL, without giving them edit or admin permissions for the entire workspace.
For example:
User A should be able to edit the SQL of Query Table "Support KPI"
User A should only have read access to some other tables
User A should have no access to sensitive Finance or HR views
User A should not be able to modify or delete unrelated Query Tables, reports or dashboards
As far as I understand, this is currently not possible.
Sharing individual views allows granular read access, but once a user needs design/edit permissions, the permissions become much broader and apply to the workspace or entity type rather than to individual objects.
A permission model like this would be extremely useful:
Query Table A:
View: Yes
Edit SQL / Design: Yes
Delete: No
Query Table B:
View: Yes
Edit SQL / Design: No
Query Table C:
No access
Ideally, these permissions could be assigned to individual users, groups or custom roles.
Creating separate workspaces for every responsibility area is technically possible, but introduces additional complexity with data synchronization, duplicated tables, relationships and report maintenance. For larger Analytics environments, splitting workspaces only because of missing object-level edit permissions does not scale particularly well.
From a governance and security perspective, this would also enable proper least-privilege access: users could maintain exactly the reports or Query Tables they are responsible for without receiving unnecessary permissions for the rest of the workspace.
Are object-level design/edit permissions for individual Views or Query Tables currently planned or on the Zoho Analytics roadmap? Or is there a workaround?
Thanks!