Forum Discussion
Publish & Solution Governance
- 10 months ago
Hi icassiem ,
you can’t fully block local publishing, but you can control it with a few steps:
Store all approved PBIX files in one governed SharePoint/OneDrive folder (read-only for users).In Power BI Admin Portal, turn off “Download PBIX” and “Publish to Web.”Limit workspace Admin roles to governance owners; others get Contributor access only.Use Power Automate or Admin APIs to flag reports not published from the approved folder.This keeps publishing controlled without needing to check every file manually.
Thank you.
Hi icassiem ,
Thank you for reaching out to Microsoft Fabric Community.
Thank you xifeng_L for the prompt response.
Regarding question 1: You can't technically force publishing only from SharePoint, but you can enforce it by storing all approved PBIX files in a governed SharePoint/OneDrive folder and disabling PBIX download in Tenant Settings. This ensures users must work from the central source instead of personal copies.
Regarding question 3: To ensure only you manage access, assign users the Contributor role (so they can publish/update) but keep the Admin role restricted to governance owners only. Also disable “Allow contributors to update the app” in workspace settings to maintain controlled sharing rights.
Thank You v-venuppu
How ould i do this? "enforce it by storing all approved PBIX files in a governed SharePoint/OneDrive folder" because they will publish from PC, unless an admin is esrablished to check
i feel for this to work, there must be a dom champion the issue the champions are the cowboys, sources )files) & solutions located on PC etc