This page lists the IAM roles and permissions for Storage Insights. To search through all roles and permissions, see the role and permission index .
Storage Insights roles
Storage Insights Admin
( roles/
)
Full access to Storage Insights resources.
resourcemanager.projects.get
resourcemanager.projects.list
storageinsights.*
-
storageinsights.datasetConfigs. create -
storageinsights.datasetConfigs. delete -
storageinsights.datasetConfigs. get -
storageinsights.datasetConfigs. linkDataset -
storageinsights.datasetConfigs. list -
storageinsights.datasetConfigs. unlinkDataset -
storageinsights.datasetConfigs. update -
storageinsights.locations.get -
storageinsights.locations.list -
storageinsights.operations. cancel -
storageinsights.operations. delete -
storageinsights.operations.get -
storageinsights.operations. list -
storageinsights.reportConfigs. create -
storageinsights.reportConfigs. delete -
storageinsights.reportConfigs. get -
storageinsights.reportConfigs. list -
storageinsights.reportConfigs. update -
storageinsights.reportDetails. get -
storageinsights.reportDetails. list
Storage Insights Analyst
( roles/
)
Data access to Storage Insights.
resourcemanager.projects.get
resourcemanager.projects.list
storageinsights.
storageinsights.
storageinsights.
storageinsights.
storageinsights.locations.*
-
storageinsights.locations.get -
storageinsights.locations.list
storageinsights.operations.get
storageinsights.
storageinsights.
storageinsights.
storageinsights.
-
storageinsights.reportDetails. get -
storageinsights.reportDetails. list
StorageInsights Service Agent
( roles/
)
Permissions for Insights to write reports into customer project
bigquery.datasets.create
serviceusage.services.use
storageinsights.
Storage Insights Viewer
( roles/
)
Read-only access to Storage Insights resources.
resourcemanager.projects.get
resourcemanager.projects.list
storageinsights.
storageinsights.
storageinsights.locations.*
-
storageinsights.locations.get -
storageinsights.locations.list
storageinsights.operations.get
storageinsights.
storageinsights.
storageinsights.
storageinsights.
-
storageinsights.reportDetails. get -
storageinsights.reportDetails. list
Storage Insights permissions
storageinsights.
datasetConfigs.
create
Owner
( roles/
)
Editor
( roles/
)
Storage Insights Admin
( roles/
)
storageinsights.
datasetConfigs.
delete
Owner
( roles/
)
Editor
( roles/
)
Storage Insights Admin
( roles/
)
storageinsights.
datasetConfigs.
get
Owner
( roles/
)
Editor
( roles/
)
Viewer
( roles/
)
Support User
( roles/
)
Storage Insights Admin
( roles/
)
Storage Insights Analyst
( roles/
)
Storage Insights Viewer
( roles/
)
storageinsights.
datasetConfigs.
linkDataset
Owner
( roles/
)
Editor
( roles/
)
Storage Insights Admin
( roles/
)
Storage Insights Analyst
( roles/
)
storageinsights.
datasetConfigs.
list
Owner
( roles/
)
Editor
( roles/
)
Viewer
( roles/
)
Security Admin
( roles/
)
Security Auditor
( roles/
)
Security Reviewer
( roles/
)
Support User
( roles/
)
Storage Insights Admin
( roles/
)
Storage Insights Analyst
( roles/
)
Storage Insights Viewer
( roles/
)
storageinsights.
datasetConfigs.
unlinkDataset
Owner
( roles/
)
Editor
( roles/
)
Storage Insights Admin
( roles/
)
Storage Insights Analyst
( roles/
)
storageinsights.
datasetConfigs.
update
Owner
( roles/
)
Editor
( roles/
)
Storage Insights Admin
( roles/
)
storageinsights.locations.get
Owner
( roles/
)
Editor
( roles/
)
Viewer
( roles/
)
Support User
( roles/
)
Storage Insights Admin
( roles/
)
Storage Insights Analyst
( roles/
)
Storage Insights Viewer
( roles/
)
storageinsights.locations.list
Owner
( roles/
)
Editor
( roles/
)
Viewer
( roles/
)
Security Admin
( roles/
)
Security Auditor
( roles/
)
Security Reviewer
( roles/
)
Support User
( roles/
)
Storage Insights Admin
( roles/
)
Storage Insights Analyst
( roles/
)
Storage Insights Viewer
( roles/
)
storageinsights.
operations.
cancel
Owner
( roles/
)
Editor
( roles/
)
Storage Insights Admin
( roles/
)
storageinsights.
operations.
delete
Owner
( roles/
)
Editor
( roles/
)
Storage Insights Admin
( roles/
)
storageinsights.operations.get
Owner
( roles/
)
Editor
( roles/
)
Viewer
( roles/
)
Support User
( roles/
)
Storage Insights Admin
( roles/
)
Storage Insights Analyst
( roles/
)
Storage Insights Viewer
( roles/
)
storageinsights.
operations.
list
Owner
( roles/
)
Editor
( roles/
)
Viewer
( roles/
)
Security Admin
( roles/
)
Security Auditor
( roles/
)
Security Reviewer
( roles/
)
Support User
( roles/
)
Storage Insights Admin
( roles/
)
Storage Insights Analyst
( roles/
)
Storage Insights Viewer
( roles/
)
storageinsights.
reportConfigs.
create
Owner
( roles/
)
Editor
( roles/
)
Storage Insights Admin
( roles/
)
storageinsights.
reportConfigs.
delete
Owner
( roles/
)
Editor
( roles/
)
Storage Insights Admin
( roles/
)
storageinsights.
reportConfigs.
get
Owner
( roles/
)
Editor
( roles/
)
Viewer
( roles/
)
Support User
( roles/
)
Storage Insights Admin
( roles/
)
Storage Insights Analyst
( roles/
)
Storage Insights Viewer
( roles/
)
storageinsights.
reportConfigs.
list
Owner
( roles/
)
Editor
( roles/
)
Viewer
( roles/
)
Security Admin
( roles/
)
Security Auditor
( roles/
)
Security Reviewer
( roles/
)
Support User
( roles/
)
Storage Insights Admin
( roles/
)
Storage Insights Analyst
( roles/
)
Storage Insights Viewer
( roles/
)
storageinsights.
reportConfigs.
update
Owner
( roles/
)
Editor
( roles/
)
Storage Insights Admin
( roles/
)
storageinsights.
reportDetails.
get
Owner
( roles/
)
Editor
( roles/
)
Viewer
( roles/
)
Support User
( roles/
)
Storage Insights Admin
( roles/
)
Storage Insights Analyst
( roles/
)
Storage Insights Viewer
( roles/
)
storageinsights.
reportDetails.
list
Owner
( roles/
)
Editor
( roles/
)
Viewer
( roles/
)
Security Admin
( roles/
)
Security Auditor
( roles/
)
Security Reviewer
( roles/
)
Support User
( roles/
)
Storage Insights Admin
( roles/
)
Storage Insights Analyst
( roles/
)
Storage Insights Viewer
( roles/
)
Service agent roles
- StorageInsights Service Agent
(
roles/)storageinsights.serviceAgent

