API permissions by role and by action

The Bitsight API and the Bitsight Vendor Risk Management and Trust Management Hub API let developers build applications around Bitsight data. Users generate API tokens to authenticate. A user's role determines who can generate and manage company API tokens and user API tokens. This article lists the API token permissions for each role and for each action.

Roles referenced on this page: Users with the Admin, Group Admin, Portfolio Manager, Operations, Internal Business User, User, or View Only role.

What can my role do?

Use this section to find everything a specific role can and can't do with API tokens. For a breakdown by action instead, see By action below.

What can an Admin do with API tokens?
  • Can generate and manage company API tokens.
  • Can generate and manage user API tokens.
What can a Group Admin do with API tokens?
  • Cannot generate or manage company API tokens.
  • Can generate and manage user API tokens.
What can a Portfolio Manager do with API tokens?
  • Cannot generate or manage company API tokens.
  • Can generate and manage user API tokens.
What can an Operations user do with API tokens?
  • Cannot generate or manage company API tokens.
  • Can generate and manage user API tokens.
What can an Internal Business User do with API tokens?
  • Cannot generate or manage company API tokens.
  • Can generate and manage user API tokens.
What can a User do with API tokens?
  • Cannot generate or manage company API tokens.
  • Can generate and manage user API tokens.
What can a View Only user do with API tokens?
  • Cannot generate or manage company API tokens.
  • Can generate and manage user API tokens.

By action

Permissions key

✅ = Is permitted.

❌ = Not permitted.

➖ = Not applicable and not permitted.

Generate and manage 
company API tokens

✅ Only Admins can do this.

❌ No other role can generate or manage company API tokens.
 

Generate and manage 
user API tokens

✅ All roles can do this.
 

Publish Date or Recent Edits
  • November 25, 2024: Separated from User Permissions and added VRM/TMH roles.
Was this article helpful?
0 out of 0 found this helpful

Comments

0 comments

Please sign in to leave a comment.