Confidential Reporting & Content Access Control
20 min
this article explains ashby analytics content access control learn how to make reports and dashboards private or public for your organization's users, and how to share private reports with specific individuals the content access controls described in this article, which the exception of dashboard locking, are available on all ashby plans foundations legacy plus plus enterprise ✅ ✅ ✅ ✅ dashboard locking is not available on foundations plans because foundations does not provide custom dashboard creation content access vs permissions in ashby analytics, reports and dashboards are thought of as "content " making a report or dashboard private to yourself, shared with a restricted set of users, or shared with your entire organization is the focus of content access control what results show up in a report (for example, whether a user sees a summary including all departments and jobs versus a summary that shows only the engineering department) is the focus of permissions, sometimes referred to as data access control content access controls what content, reports, or dashboards a user is allowed to view permissions controls what data is available in reports or dashboards if you want to restrict what results users see in their reports, see user permissions docid\ i5jhibmkqhyobnnvrl8rk content access in ashby in ashby, you can restrict access to both reports and dashboards there are two states content can be in private restricts access to you and anyone on the access list public shared with your organization and viewable by any ashby user upon saving new content, you have the choice of making it private or public the default option is to create public content toggle the private report setting on if the report should be private change access settings admin users can adjust access settings at any time you can view the access settings under the more menu, with an open or closed lock icon indicating whether the content is public or private making a report private or public to learn how to build reports, see report builder & ai assisted report builder docid\ kfmxauorkzx6 ezbu32po a public report can be made private at any time by selecting more in the upper right corner and then access then, select make private this will open a screen where you can manage access to the private report see the next section to confidential reporting & content access control docid\ muchm4f6zrjbv4r1fjn o making private removes all access to the report and removes the report from any private dashboards that are private to more than just you because this action can affect other users' experience, ashby asks you to confirm the choice in a two step process you can make the report public again by navigating to more > access > make public > remove access restrictions when making a private report public, ashby asks for confirmation, as the report becomes accessible to all ashby users manage access to private content you can share any private content with other users by adding them to the access list only the content author has the option to enable further access management by users on the access list, by toggling the allow sharing option the primary content access management options are click make public to make the content public, granting all organization users access add additional users to the access list by searching for them and selecting them from the drop down, or select the trash can icon next to a user's name to remove them from the access list check the allow sharing box to allow users on the access list to add the report to dashboards and add other users to the access list select revoke all access to make the report strictly private revoking all access removes access to the report from all users and removes the report from all dashboards that are not private to you because this choice may affect other users' experience, ashby requires a two step confirmation lock or unlock a report users with an admin license can lock or unlock a report to prevent other users from making changes or accidental edits only the user who locked the report can unlock it if a report is unlocked, the button says unlocked and the lock icon is open if a report is locked, the button says locked , shows a closed lock icon, and is golden yellow to lock a report, click the button that says unlocked and select lock report to unlock a report, click the button that says locked and select unlock report if the user who locked a report has been deactivated or terminated, any organization admin can unlock the report screen cast 2023 01 10 at 9 10 19 am gif things to note when adding reports to dashboards keep the following in mind when adding reports to dashboards add report to dashboard after a report is added to a dashboard, it is accessible to everyone who has access to the report directly and everyone who has access to the dashboard if a user has access to the report by having access to the dashboard, they can also view the report on its own (outside the dashboard in the saved report view) remove report from dashboard anyone who had access to the report solely by having access to the dashboard no longer has access to the report remove user from report access control list if the removed user does not have access to any dashboard the report is on, this action removes the user's access to the report if they do have access to a dashboard the report is on, the user continues to have access to the report dashboard access public, private, locked, unlocked to learn how to build a dashboard, see building your first dashboard docid\ q7a7cpfpyulmt6bd1qvym similar to reports, dashboards can be public or private public dashboards are available to your organization private dashboards are available only to the author and users on the dashboard's access list dashboards can also be locked or unlocked dashboard locking freezes the dashboard's reports, layout, and available filters and controls who can change the dashboard configuration it also lets you control whether users can copy the dashboard or create scheduled deliveries private reports on dashboards it is possible to add a private report to any dashboard in doing so, you grant users with access to the dashboard access to the report because dashboards and reports have separate access lists, the access list for the report may be empty (apart from you) if any other users have access via a dashboard, you see the revoke all access button, allowing you to enforce strict privacy and remove access to the report from all users configure dashboard access settings data visibility continues to follow the viewer's permissions, unless view with my permissions is enabled for more on how this works, see permissions & sharing dashboards docid\ ndrpeyx1fej35uvnuled to manage dashboard privacy, locking, and sharing settings navigate to the dashboard select more > access select whether the dashboard is public or private select whether the dashboard is locked or unlocked locking protects the dashboard configuration only it does not lock the underlying reports users who can edit the underlying reports can still modify those reports directly add users to the access list and assign each user a viewer or editor role choose whether users can copy the dashboard and whether they can manage scheduled deliveries by checking the corresponding checkboxes for these permissions how dashboard access roles work on locked dashboards the dashboard locker and users with the editor role can modify the dashboard's permissions, access list, layout, and content on a private, locked dashboard, grant users the viewer role to provide view only access a public, locked dashboard will allow view only access to all users who can see public dashboards copying is disabled by default when a dashboard is locked, but can be enabled using the checkboxes on the lock options screen scheduled delivery management is also disabled for users with dashboard access by default editors can manage scheduled deliveries, and the dashboard owner can allow other users with access to manage them dashboard locking and shared views when you configure a dashboard to show data using a specific user's permissions through view with my permissions , ashby also locks the dashboard the user whose permissions are shared becomes the locker viewing who locked a dashboard to see who locked a dashboard, you can hover over the locked indicator either in the top left of the dashboard, or on your saved dashboards list in the saved dashboard list, you can select + add column and add the locked by column to add that data to the list view faq what should i do if a report or dashboard is locked and the user who locked it no longer works for our organization? for reports, reach out to an organization admin, as they can unlock the report if you do not know who your organization admin is, reach out to us at support\@ashbyhq com mailto\ support\@ashbyhq com for dashboards, if the locker is deactivated or no longer available, an organization admin who can access the dashboard can unlock it an elevated access user can also be granted the administer dashboard access permission so they can unlock dashboards and manage dashboard access for dashboards they can view users with the editor role can also manage the locked dashboard's permissions, access list, layout, and content