Forum Discussion
User with Contributor Role Unable to Checkout Branches or Create New Workspaces
- 1 year ago
Hi ifeanyi
-
Thank you for sharing your thoughtful workaround for managing least-privilege access in Microsoft Fabric.
-
We understand the current limitations around granular role-based permissions, especially compared to Synapse or Data Factory.
-
Using a dedicated collaboration workspace to isolate contributor access is a practical and effective solution.
In the meantime, if you're open to it, we recommend sharing your approach and suggestions on the Fabric Ideas - Microsoft Fabric Community It’s actively reviewed by the product team and helps influence future roadmap priorities.
Let us know if you’d like assistance with anything else or help streamlining your current setup further.
Thanks for being a part of Microsoft Fabric Community Forum. -
I am the administrator of a Microsoft Fabric workspace connected to an Azure DevOps repository, and I have encountered an issue with user permissions. Specifically, when adding a user with Contributor access, they are unable to perform the following actions:
- Check out a branch
- Create a new branch from the workspace
These options remain disabled for the user, as shown in the attached image.
However, when I update their role to Member, the options become enabled, allowing them to create a branch. Unfortunately, an error occurs during the process (details in the attached image).
When I further upgrade their role to Admin, they can successfully check out and create a new branch without any issues.
I want to adhere to the principle of least privilege, meaning I do not want users to have Admin access unless absolutely necessary. Ideally, I would like them to perform these actions as Contributors. Could you please confirm whether this is expected behavior or if there is a configuration setting that needs adjustment?
Your guidance on resolving this would be greatly appreciated.
Thank you in advance for your support!