Global Roles for Projects

Learn how predefined global roles in JFrog Platform Projects grant members consistent actions across all projects in DEV or PROD environments.

Predefined global roles are high-level project roles that allow project members assigned to the role to perform a set of actions across all projects in the JFrog Platform. The Platform admin defines the scope of the role by enabling the actions supported for each role and sets the environments — DEV (Development) or PROD (Production) — in which the global role will apply. You can also personalize your selection and create custom global roles.

Predefined Global Roles

The predefined global roles are:

  • Project Admin
  • Developer
  • Contributor
  • Viewer
  • Release Manager
  • Security Manager

Global Role Actions

The following actions can be enabled for global roles on resources within projects, including CRUD actions and product-specific actions for JFrog Artifactory, JFrog Pipelines, and JFrog Xray:

Read ArtifactsDownload artifacts and read the metadata.
Write ArtifactsUpload artifacts
Delete ArtifactsDelete or overwrite artifacts.
Delete BuildsDelete or overwrite builds.
Promote Release Bundle

Requires an Enterprise+ license.

Promote Release Bundles according to their destination permissions

Trigger PipelinesManually trigger execution of steps
Manage PipelinesManage Pipelines: Create and edit pipeline sources
Trigger Security scanTriggers Xray security scans on indexed resources
Manage Xray DataTrigger Xray scans on builds. Create and delete custom issues and licenses.
Manage ReportsManage, delete, and modify Xray reports.
Manage Watches and PoliciesManage, delete, and modify Xray Watches and Policies.
Ignore Global ViolationsIgnore violations created by a Global Watch that are not project-specific.
Read PoliciesDownload policies and read the metadata.

Related Topics


Did this page help you?