Anusha66
Advocate IV
9 months agoStatus:
New
Restrict Edit Access on Semantic Models for Report Developers
Currently, all report developers who build reports from a semantic model in Microsoft Fabric require Edit Access to the model. Without this permission, they cannot create reports, as the option is unavailable.
This approach poses challenges, especially with Direct Lake models, where data resides in Fabric itself. In many scenarios, organizations may have one large semantic model serving multiple developers. Granting edit access to all report developers introduces risks such as accidental changes to the model, governance issues, and lack of isolation between roles.
Proposed Enhancement:
- Introduce role separation:
- Semantic Model Developer: Full edit access to manage model structure, measures, and relationships.
- Power BI Report Developer: Ability to create reports from the semantic model without requiring edit permissions on the model itself.
This change will improve security, governance, and collaboration in environments where multiple developers work on shared models.
No CommentsBe the first to comment
Recent ideas
Paste values in slicers for hierarchy data
Hierarchical slicers are widely used in enterprise reports (for example Product RCN > SKU Key, Region > Country > City, or GPP > Division > RCN > SKU). Users often need to bulk-filter by pasting valu...eddieisking200041 minutes agoFrequent VisitorNew3Views0likes0CommentsPower Query Parameter create/use when connecting to a dataflow
In power query when you connect to a table in a dataflow there are no options to create or use a parameter for that dataflow. When connecting to SQL there is an option when setting up the connection ...ben_holmes3 hours agoNew MemberNeed Clarification202Views3likes2CommentsMake Copilot Approval status for semantic model available through API
In recent versions fabric allowed to mark a semantic model as approved for copilot to reduce AI adoption friction. However there is no specific way for external governance application to analyse whi...FrançoisD3 hours agoFrequent VisitorNew9Views2likes0CommentsClone a workspace, including its data, to a new workspace
Description: Today there's no way to fully clone a Fabric workspace: git sync and Deployment Pipelines move item definitions only, not the underlying data; Warehouse's zero-copy CREATE TABLE ... AS ...gclements4 hours agoHelper IINew12Views1like0CommentsAllow NotebookUtils getSecret() to authenticate with Workspace Identity
Current behavior In Microsoft Fabric, notebookutils.credentials.getSecret() authenticates against Azure Key Vault using the identity of the user who executes the notebook. This behavior appli...tmihara10 hours agoNew MemberNew8Views0likes0Comments