Skip to main content
StreamNative Cloud role-based access control determines which SQL Workspace and SQL Catalog resources a user can view and manage. Cloud permissions apply to operations such as:
  • Viewing SQL Workspaces and their status.
  • Creating and deleting a SQL Workspace.
  • Adding or removing a SQL Catalog.
  • Viewing workspace connection information.
  • Opening the SQL experience in the Cloud Console.
The Cloud Console displays only the resources and actions allowed by the user’s assigned roles. Follow least-privilege practices when granting access. For general StreamNative Cloud role and role-binding concepts, see RBAC overview.

Cloud roles and engine roles are separate

A cloud role that permits SQL Workspace management does not generally grant the same permissions inside the SQL Workspace engine. During Private Preview, Organization Admin users can administer the engine. Other cloud resource permissions do not automatically grant engine access. For details, see Cloud User Access.