RLS testing UI (Test RLS roles directly in the service without publishing workarounds)
Hi Team,
Hope you are doing well!
Now:
Testing Row-Level Security today requires publishing to production first. There is no safe way to validate who sees what before going live. Misconfigured roles are only discovered after the fact, a direct governance and compliance risk.
GOAL :
A native testing pane inside the Power BI Service where developers can simulate any role, impersonate a specific user by email, and immediately see which rows and tables are accessible, without touching the live environment.
Three capabilities: role simulation without publishing, per-table access visibility, and an automated assertion suite that flags regressions whenever the data model changes.
Why ?
Security incidents caused by misconfigured RLS are entirely preventable. This feature makes them so. It also reduces the time developers spend on manual validation cycles from hours to minutes, and provides compliance teams with a formal, exportable audit record of every validation session.
Thank you for considering this, I believe it would be a great addition to the Fabric and power bi experience
1 Comment
- ThornKevin
Advocate I
Waiting since forever for such a feature. Would love to get at least something comparable to Azure RBAC Permission evaluator UI: - Select EntraID User, Group or Identity - Evaluate all roles across hierarchy (in this case, data domain, workspace, Lakehouse item, OneLakeSecurity Object plus CLS or RLS restrictions) Especially to push usage of directLake mode while using multiple lakehouses as source for visuals is a nightmare. No chance to validate if a user is able to see all visuals. In our case, there is one Lakehouse with 20 OneLakeSecurity roles and each has 60 tables assigned where all of them have RLS Rules defined. No chance to test this…..
Recent ideas
How to Back Up and Restore a Fabric Lakehouse for Debugging
Is there a way to clone a Lakehouse, including its data, in Microsoft Fabric? When we encounter a data issue in Production, our usual approach is to take a backup of the database, restore it to a se...gsrinivasan3 hours agoNew MemberNew37Views0likes1CommentTenant Administration for Fabric Cloud Connections - Enterprise Governance Gap
Microsoft Fabric currently provides robust security around cloud connections by treating them as user-owned securable resources. While this model works well for personal connections, it creates signi...hrenollet4 hours agoRegular VisitorNew77Views7likes1CommentEnable Ownership Change / Take‑Over for Mirrored Database Items in Fabric
Mirrored DBs do not support ownership transfer today. This becomes an issue when someone leaves the company. And the user tied to the ownership is beeing disabled. That means you need to recreate the...Sigurd6 hours agoNew MemberNew873Views25likes3CommentsOption to hide item counts in filter pane
Allow report authors to hide counts displayed next to filter values while preserving filtering functionality. Currently, Power BI displays record counts next to values in filter panes and certain s...saul_galdamez8 hours agoNew MemberNew21Views0likes0CommentsAllow Detect Data Changes for Historic Data Outside Incremental Window
In Power BI Incremental Refresh,Detect Data Changes only works inside the incremental refresh window. If historic data gets updated, Power BI cannot detect or refresh it unless I expand the increment...NAGAKEERTHI_Y12 hours agoNew MemberNew119Views1like1Comment