Skip to main content
DataErai controls access per object. You can set permissions on a project, a collection, an asset, or a dataset, using three roles.

The three roles

RoleWhat it allows
ReadView the object — its metadata, content, and notes.
WriteEverything in Read, plus edit metadata, content, and notes (and add or manage items in a collection).
AdminEverything in Write, plus share the object with others (and lock an asset or dataset).
What each role grants is tailored to the object:
  • Project — Read sees and lists the project; Write can edit it; Admin can share it.
  • Collection — Write can also add and organize the items inside; Admin can share.
  • Asset — Read includes the file content and notes; Admin can also lock the asset.
  • Dataset — like an asset, with Admin additionally able to grant access to restricted fields.

Permissions cascade

Access granted higher in the hierarchy flows down: someone with Read on a project can read the collections and assets inside it. You can grant access on a specific item to widen or narrow it for that item. Datasets are shared in their own right, so you can govern an analysis-ready dataset separately from the assets it came from.

Who you can share with

  • Individual people in your organization.
  • Groups, to grant many people at once.
  • The public, for read-only access via link.
See Share with people and groups and Public sharing.

Next steps

People & groups

Grant and manage access for individuals and teams.

Restricted fields

Protect sensitive columns within a dataset.