Asset rights reference

Asset rights reference

This page lists every right in the Assets module and what it grants. Rights come in two scopes: user-level rights, configured in User Management on user roles, and folder- and asset-level rights, configured via Set Rights on a folder or asset.

You only ever see rights you yourself hold, and you can only grant rights you hold to others.

The three-state model

Folder- and asset-level rights have three states: Allow, Deny, or Not Set. Each right can be set separately on two tabs: the This asset and contents tab, which applies to the asset itself and everything inside it, and the Contents tab, which applies only to what is inside the asset. A right left Not Set on either tab is inherited from the parent folder, following the Deny over Allow over Not Set hierarchy. See How rights are inherited for the full explanation. User-level rights are two-state (Allow / Restrict), since they apply module-wide rather than per folder.

User-level rights

Configured in User Management, on the Assets Access tab of a user role.

See Assets Rights for the fill list of Asset rights on user level.

Some version-related settings, such as configuring automatic version purging, are general user rights configured on users rather than per folder or asset, so they are not part of the folder- and asset-level rights below.

Folder- and asset-level rights

Configured via Set Rights, directly on a folder or asset, or bundled into an asset role and applied from there. See Set Rights on folders and assets. The rights are listed below in the order they appear in the interface.

Right

Description

View

See the folder or asset, its contents, and its properties.

Upload asset

Upload new assets into a folder.

Create folder

Create new subfolders.

Download

Download the asset.

Rename

Rename the asset. Which assets this applies to depends on the tab it is set on.

Move

Move the asset to another location. Which assets this applies to depends on the tab it is set on.

Delete

Delete the asset. When set on a folder via the Contents tab, lets someone delete what is inside the folder without deleting the folder itself.

Send basket

Send the asset, or add it to a basket.

Create version

Upload a new version of an existing asset.

Create approval

Start an approval cycle on the asset.

View version

View the Versions tab in File Details.

Download version

Download a specific version of an asset.

Purge version

Permanently delete the file content of old versions.

Modify asset property

Edit a folder or asset's custom metadata.

View approvals

View past and ongoing Assets+ approval cycles in File Details.

Modify own approvals

Reassign your own Assets+ approval to another actor on a running loop.

Modify approvals

Change actors on running Assets+ approval loops.

Cancel approvals

Cancel a running Assets+ approval cycle.

See logs

View the Logs tab on an asset.

Set asset rights

Open Set Rights on the asset and configure rights for other users and groups. You can only configure rights you yourself hold, on the same tab.

Traverse is a further folder-level right, but it is managed automatically by the system and never set in this interface. See How rights are inherited | Traverse