This page lists the IAM roles and permissions for Secret Manager. To search through all roles and permissions, see the role and permission index.
Secret Manager roles
Role | Permissions |
---|---|
Secret Manager Admin( Full access to administer Secret Manager resources. Lowest-level resources where you can grant this role:
|
|
Secret Manager Secret Accessor( Allows accessing the payload of secrets. Lowest-level resources where you can grant this role:
|
|
Secret Manager Secret Version Adder( Allows adding versions to existing secrets. Lowest-level resources where you can grant this role:
|
|
Secret Manager Secret Version Manager( Allows creating and managing versions of existing secrets. Lowest-level resources where you can grant this role:
|
|
Secret Manager Viewer( Allows viewing metadata of all Secret Manager resources Lowest-level resources where you can grant this role:
|
|
Secret Manager permissions
Permission | Included in roles |
---|---|
| Owner ( Editor ( Viewer ( Security Auditor ( Support User ( Secret Manager Admin ( Secret Manager Viewer ( |
| Owner ( Editor ( Viewer ( Security Admin ( Security Auditor ( Security Reviewer ( Support User ( Secret Manager Admin ( Secret Manager Viewer ( |
| Owner ( Editor ( Secret Manager Admin ( |
| Owner ( DLP Organization Data Profiles Driver ( DLP Project Data Profiles Driver ( Tag User ( Secret Manager Admin ( |
| Owner ( Editor ( Secret Manager Admin ( |
| Owner ( DLP Organization Data Profiles Driver ( DLP Project Data Profiles Driver ( Tag User ( Secret Manager Admin ( |
| Owner ( Editor ( Viewer ( Security Auditor ( Support User ( Secret Manager Admin ( Secret Manager Viewer ( |
| Owner ( Editor ( Viewer ( Connector Admin ( Security Admin ( Security Auditor ( Security Reviewer ( Support User ( Secret Manager Admin ( Secret Manager Viewer ( |
| Owner ( Editor ( Viewer ( Security Admin ( Security Auditor ( Security Reviewer ( Support User ( Secret Manager Admin ( Secret Manager Viewer ( Service agent roles
|
| Owner ( Editor ( Viewer ( DLP Organization Data Profiles Driver ( DLP Project Data Profiles Driver ( Security Auditor ( Support User ( Tag User ( Tag Viewer ( Secret Manager Admin ( Secret Manager Viewer ( |
| Owner ( Editor ( Viewer ( DLP Organization Data Profiles Driver ( DLP Project Data Profiles Driver ( Security Auditor ( Support User ( Tag User ( Tag Viewer ( Secret Manager Admin ( Secret Manager Viewer ( |
| Owner ( Security Admin ( Secret Manager Admin ( |
| Owner ( Editor ( Secret Manager Admin ( |
| Owner ( Secret Manager Admin ( Secret Manager Secret Accessor ( |
| Owner ( Editor ( Secret Manager Admin ( Secret Manager Secret Version Adder ( Secret Manager Secret Version Manager ( |
| Owner ( Editor ( Secret Manager Admin ( Secret Manager Secret Version Manager ( |
| Owner ( Editor ( Secret Manager Admin ( Secret Manager Secret Version Manager ( |
| Owner ( Editor ( Secret Manager Admin ( Secret Manager Secret Version Manager ( |
| Owner ( Editor ( Viewer ( Security Auditor ( Support User ( Secret Manager Admin ( Secret Manager Secret Version Manager ( Secret Manager Viewer ( |
| Owner ( Editor ( Viewer ( Security Admin ( Security Auditor ( Security Reviewer ( Support User ( Secret Manager Admin ( Secret Manager Secret Version Manager ( Secret Manager Viewer ( |