Asset rights reference
This page lists every right in the Assets module and what it grants. Rights come in two scopes: user-level rights, configured in User Management on user roles, and folder- and asset-level rights, configured via Set Rights on a folder or asset.
You only ever see rights you yourself hold, and you can only grant rights you hold to others.
The three-state model
Folder- and asset-level rights have three states: Allow, Deny, or Not Set. Each right can be set separately on two tabs: the This asset and contents tab, which applies to the asset itself and everything inside it, and the Contents tab, which applies only to what is inside the asset. A right left Not Set on either tab is inherited from the parent folder, following the Deny over Allow over Not Set hierarchy. See How rights are inherited for the full explanation. User-level rights are two-state (Allow / Restrict), since they apply module-wide rather than per folder.
User-level rights
Configured in User Management, on the Assets Access tab of a user role.
See Assets Rights for the fill list of Asset rights on user level.
Some version-related settings, such as configuring automatic version purging, are general user rights configured on users rather than per folder or asset, so they are not part of the folder- and asset-level rights below.
Folder- and asset-level rights
Configured via Set Rights, directly on a folder or asset, or bundled into an asset role and applied from there. See Set Rights on folders and assets. The rights are listed below in the order they appear in the interface.
|
Right |
Description |
|---|---|
|
View |
See the folder or asset, its contents, and its properties. |
|
Upload asset |
Upload new assets into a folder. |
|
Create folder |
Create new subfolders. |
|
Download |
Download the asset. |
|
Rename |
Rename the asset. Which assets this applies to depends on the tab it is set on. |
|
Move |
Move the asset to another location. Which assets this applies to depends on the tab it is set on. |
|
Delete |
Delete the asset. When set on a folder via the Contents tab, lets someone delete what is inside the folder without deleting the folder itself. |
|
Send basket |
Send the asset, or add it to a basket. |
|
Create version |
Upload a new version of an existing asset. |
|
Create approval |
Start an approval cycle on the asset. |
|
View version |
View the Versions tab in File Details. |
|
Download version |
Download a specific version of an asset. |
|
Purge version |
Permanently delete the file content of old versions. |
|
Modify asset property |
Edit a folder or asset's custom metadata. |
|
View approvals |
View past and ongoing Assets+ approval cycles in File Details. |
|
Modify own approvals |
Reassign your own Assets+ approval to another actor on a running loop. |
|
Modify approvals |
Change actors on running Assets+ approval loops. |
|
Cancel approvals |
Cancel a running Assets+ approval cycle. |
|
See logs |
View the Logs tab on an asset. |
|
Set asset rights |
Open Set Rights on the asset and configure rights for other users and groups. You can only configure rights you yourself hold, on the same tab. |
Traverse is a further folder-level right, but it is managed automatically by the system and never set in this interface. See How rights are inherited | Traverse