Help Center / Browsing Data / Exploring Roles

Exploring Roles

The Roles tab is where you answer questions about role design rather than about people. It is worth a visit before any remediation, because the population holding a role decides whether editing that role is a small change or a landscape-wide one.

Roles tab

The list covers every single and composite role in the data source, with per-column filtering.

InformationDescription
Role nameSingle or composite role identifier
DescriptionRole description from the source system
TypeSingle or composite
Users assignedHow many users hold it, directly and through composites
ActionsHow many actions it grants
UsageAggregated execution count across its actions, when usage data is loaded

Role detail

Selecting a role shows what it actually contains:

InformationDescription
AuthorizationsPermission objects, fields, and value ranges
ActionsActions the role grants
Execution countHow often each action has been used, across all holders
Last usedMost recent execution date per action
Users assignedThe holders, split between direct assignment and via composite
Composite membershipFor a single role, the composites that include it
Contained rolesFor a composite, the single roles it bundles
Master and derivedWhether the role is a master, or which master it derives from

Two of these repay attention before a change. The direct versus via composite split tells you whether unassigning the role from a user will actually remove their access, or whether a composite will keep granting it. The master and derived relationship tells you whether editing the role is really editing dozens of derived roles at once.

Data source information

With a data source selected, the Info tab reports:

  • Connection type and configuration
  • System name and type
  • Per-table statistics: rows loaded, rows ignored, and parse errors

Row counts here are the first place to look when an analysis returns less than you expected. A table that loaded far fewer rows than the source system holds usually means a truncated export or a delimiter that split the file wrongly. See Troubleshooting.

Updated on: 2026-08-02

« Back to Browsing Data