Forum Discussion
How to automatically update a scorecard linked to a PowerBi dashboard with RLS
- 1 year ago
You're correct — Power BI scorecards currently do not support automatic refresh for goals linked to RLS-enabled datasets, because scorecards can't impersonate user identity when evaluating metrics.
Current Workarounds:
- Use a Service Principal or Admin Role:
* Create a separate dataset without RLS that mirrors the required metrics.
* Populate it via DAX measures or Power Query using SUMMARIZE, GROUPBY, etc., and then link your scorecard to this "public" version.
- Use Dataflow as a Middle Layer:
* Offload data into a Power BI Dataflow with no RLS.
* Feed your scorecard from this RLS-free layer. Your RLS-secured reports can still connect to the original secured model.
- Scripted Refresh via Power Automate or REST API (Partial Help):
*Use Power Automate to programmatically trigger a refresh of metrics.
* However, it still won’t override RLS limitations, unless connected to non-RLS data.
Limitations
- Scorecards can't pass effective identity, so they can't query secured models (RLS = IsSecured = true).
- No current API or setting allows impersonating a specific user for goal evaluation.
Recommendations:
- Maintain RLS for your reports.
- Create a summary model or intermediate dataset without RLS solely for scorecard metrics.
- Sync it during refresh using scheduled flows or Power Query.
If this helped solve or clarify your issue, please mark as solution and give kudos.
- Use a Service Principal or Admin Role:
You're correct — Power BI scorecards currently do not support automatic refresh for goals linked to RLS-enabled datasets, because scorecards can't impersonate user identity when evaluating metrics.
Current Workarounds:
- Use a Service Principal or Admin Role:
* Create a separate dataset without RLS that mirrors the required metrics.
* Populate it via DAX measures or Power Query using SUMMARIZE, GROUPBY, etc., and then link your scorecard to this "public" version.
- Use Dataflow as a Middle Layer:
* Offload data into a Power BI Dataflow with no RLS.
* Feed your scorecard from this RLS-free layer. Your RLS-secured reports can still connect to the original secured model.
- Scripted Refresh via Power Automate or REST API (Partial Help):
*Use Power Automate to programmatically trigger a refresh of metrics.
* However, it still won’t override RLS limitations, unless connected to non-RLS data.
Limitations
- Scorecards can't pass effective identity, so they can't query secured models (RLS = IsSecured = true).
- No current API or setting allows impersonating a specific user for goal evaluation.
Recommendations:
- Maintain RLS for your reports.
- Create a summary model or intermediate dataset without RLS solely for scorecard metrics.
- Sync it during refresh using scheduled flows or Power Query.
If this helped solve or clarify your issue, please mark as solution and give kudos.