Source-based Policies
Here's an explanation for each Source-base policy.
A Source-based Policy includes all resource-based type permissions, which user will need to assign to a selected data source that has been connected to decube. Before you can select permissions, you will need to first select a data source that has been already added to decube.
Asset Selection for Access Controls
Administrators can grant access by two methods:
Grant access to everything: This grants access to the same permissions to all assets within the data source, including future assets that are added to the source.
Grant access to specific assets:
This grants access to the specific asset and its children (if available).
Selecting a parent asset grants future child assets as well eg. Granting access to a schema will grant access to all newly added tables within the schema.
Select specific assets to grant permissions
Click on the Select options dropdown to search for the assets to grant permissions to.

Once asset selection has been completed, the user can then continue proceed to the permissions screen.

Select Permissions for Granting Assets
Administrators can then select from a list of permissions that will apply to the selected assets in the form. The list of permissions that can be granted to the user with the permitted actions are listed in the section Permissions for Source-based policies.

Permissions for Source-based policies
Catalog and Governance
Asset Details
Edit: User able to create and submit change requests for an asset, such as description, classifications, and custom attributes.
Run the profiler for Profile & Field Statistics
Allow run profiler: User able to run profiler to generate Table Overview and Field Statistics results.
Preview
Run preview: User able to run preview to obtain sample data.
Change requests
Approve or reject change requests: User can review change requests and be selected as an approver for change requests.
Data Quality
Incidents
Read-only: User is able to see incidents, but unable to edit selection in Incident Details such as status.
Edit: User is able to update selection in Incident Details such as close or mute incidents.
Config
Read-only: User able to view the list of monitoring settings in the Config, but unable to create new or modify existing monitors
Add, modify and delete monitors: User able to create and edit monitoring settings for all types of monitors.
Data Recon
By Default, access to Data Recon is disabled for a user unless they possess a policy of Enable Data Recon. Enabling Data Recon for a source enables users to see the list of completed recons that has been completed with that data source.
Data Recon Configuration
Create: User can add a new recon configuration.
Edit: User can edit schedule for recon configuration.
Delete: User can delete any existing recon.
Export Data Recon Details
Allow export: Allow user to export unmatched rows from Recon details.
Reports
Allow export reports: allowing users to access the reports module and generate reports.
Last updated