This page lists the IAM roles and permissions for Secret Manager. To search through all roles and permissions, see the role and permission index.
Secret Manager roles
Role | Permissions |
---|---|
Secret Manager Admin( Full access to administer Secret Manager resources. Lowest-level resources where you can grant this role:
|
|
Secret Manager Secret Accessor( Allows accessing the payload of secrets. Lowest-level resources where you can grant this role:
|
|
Secret Manager Secret Version Adder( Allows adding versions to existing secrets. Lowest-level resources where you can grant this role:
|
|
Secret Manager Secret Version Manager( Allows creating and managing versions of existing secrets. Lowest-level resources where you can grant this role:
|
|
Secret Manager Viewer( Allows viewing metadata of all Secret Manager resources Lowest-level resources where you can grant this role:
|
|
Secret Manager permissions
Permission | Included in roles |
---|---|
|
Owner (
Editor (
Viewer (
Secret Manager Admin (
Secret Manager Viewer ( |
|
Owner (
Editor (
Viewer (
Security Admin (
Security Reviewer (
Secret Manager Admin (
Secret Manager Viewer ( |
|
Owner (
Editor (
Secret Manager Admin ( |
|
Owner (
DLP Organization Data Profiles Driver (
DLP Project Data Profiles Driver (
Tag User (
Secret Manager Admin ( |
|
Owner (
Editor (
Secret Manager Admin ( |
|
Owner (
DLP Organization Data Profiles Driver (
DLP Project Data Profiles Driver (
Tag User (
Secret Manager Admin ( |
|
Owner (
Editor (
Viewer (
Secret Manager Admin (
Secret Manager Viewer ( |
|
Owner (
Editor (
Viewer (
Connector Admin (
Security Admin (
Security Reviewer (
Secret Manager Admin (
Secret Manager Viewer ( |
|
Owner (
Editor (
Viewer (
Security Admin (
Security Reviewer (
Secret Manager Admin (
Secret Manager Viewer ( Service agent roles
|
|
Owner (
Editor (
Viewer (
DLP Organization Data Profiles Driver (
DLP Project Data Profiles Driver (
Tag User (
Tag Viewer (
Secret Manager Admin (
Secret Manager Viewer ( |
|
Owner (
Editor (
Viewer (
DLP Organization Data Profiles Driver (
DLP Project Data Profiles Driver (
Tag User (
Tag Viewer (
Secret Manager Admin (
Secret Manager Viewer ( |
|
Owner (
Security Admin (
Secret Manager Admin ( |
|
Owner (
Editor (
Secret Manager Admin ( |
|
Owner (
Secret Manager Admin (
Secret Manager Secret Accessor ( |
|
Owner (
Editor (
Secret Manager Admin (
Secret Manager Secret Version Adder (
Secret Manager Secret Version Manager ( |
|
Owner (
Editor (
Secret Manager Admin (
Secret Manager Secret Version Manager ( |
|
Owner (
Editor (
Secret Manager Admin (
Secret Manager Secret Version Manager ( |
|
Owner (
Editor (
Secret Manager Admin (
Secret Manager Secret Version Manager ( |
|
Owner (
Editor (
Viewer (
Secret Manager Admin (
Secret Manager Secret Version Manager (
Secret Manager Viewer ( |
|
Owner (
Editor (
Viewer (
Security Admin (
Security Reviewer (
Secret Manager Admin (
Secret Manager Secret Version Manager (
Secret Manager Viewer ( |