Don't miss your chance to take the Fabric Data Engineer (DP-700) exam on us!
Learn moreNext up in the FabCon + SQLCon recap series: The roadmap for Microsoft SQL and Maximizing Developer experiences in Fabric. All sessions are available on-demand after the live show. Register now
Currently, Microsoft Fabric (and Power BI) does not provide a tenant setting to restrict workspace app creation to specific security groups.
The available controls are:
Workspace roles:
Member role includes the ability to publish apps and manage permissions.
Contributor role removes app publishing rights but also removes the ability to manage permissions on reports/models.
Tenant settings:
You can restrict workspace creation to specific security groups.
You can control whether users can publish apps to the entire organization, but not who can create apps in general.
There is no built-in setting today to allow Members to manage permissions but block app creation.
The only way to achieve this currently is:
Use Contributor role for self-service workspaces (blocks app creation).
Grant item-level permissions on reports/models to allow sharing without giving full Member rights.
Could I please ask for a tenant setting that would allow me to control who can create workspace apps, regardless of their workspace roles?
Thank you.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.