How to setup object/property security policies permissions?

Hey!

We’ve just enrolled to the “object and property security policies” feature and we started setting it up. But some of our engineers need the permission to create new policies.

Does anybody know where can we give that permission, as an Ontology Administrator?
Bellow is an screenshot of the error.

Thanks for your help!

Cheers,

Nathan :slight_smile:

Hi Nathan!

Looks like the error is an Ontology-level permission check, not object-type-level. You’ll need Editor on the Ontology resource itself.

To grant access:

  1. Open Ontology Manager

  2. Go to top-level Ontology settings (gear icon — not a specific object type)

  3. In Permissions, grant your engineers Editor on the Ontology resource

This unlocks ontology:create-property-security-group (and also covers creating/editing object types, link types, etc. — there’s no narrower “security policies only” permission today). If that’s too broad for your governance, a common pattern is to have a small editor group create policies, then delegate per-policy configuration at the object type level.

Relevant docs: