Grant roles

To manage secrets, you need the appropriate permissions. By default, the organization owner has full access to all secrets. The owner can grant roles to other users to manage secrets at the organization and project levels.

Available roles

The following roles are available for managing secrets:

RoleScopeDescription
Secret Keys ViewerOrganizationGrants read-only access to organization secrets.
Secret Keys EditorOrganizationGrants full access to organization secrets.
Secret Keys Projects ViewerProjectGrants read-only access to project and environment secrets.
Secret Keys Projects EditorProjectGrants full access to project and environment secrets.

Any user with the project-level roles can manage secrets at the environment level, too.

You can only grant roles to users who are members of the organization. To assign invite members to the organization and assign roles, refer to the Manage members, groups, user types, and roles documentation.