A SharePoint permission level bundles individual permissions under one name, for example Read, Edit or Full Control, and is granted to people or SharePoint groups. Two built-in levels, Full Control and Limited Access, are fixed and cannot be edited.
Read more: Microsoft Learn
In the Ultra Transcenders books
Each book explains Permission level in context, with comparison tables and the common traps.
Terms in this definition
- AGDLP
Nesting pattern: users go into global groups, which go into domain local groups, which receive the permissions. AGUDLP adds universal groups for forests with several domains.
- CRUD
Shorthand for create, read, update and delete, the four basic things you do with data. Data-plane roles in Azure Cosmos DB, for instance, authorise those operations on items.
- Full control
Gives every right over protected content, EXTRACT included, plus the ability to alter or strip the encryption. Owners and the Rights Management issuer always hold it.
- Limited Access
Under this Microsoft policy, sensitive AI features such as custom neural voice or Face identification and verification can only be used after registering and being approved as a managed customer with an approved use case.
Related terms
- Limited Access permission level
A SharePoint permission level that is added automatically to the site or library containing an item shared with someone, purely so they can get to that item. It gives no further rights, and admins cannot grant it by hand.
- SharePoint group
Users on a site grouped together so they all get one permission level. New sites come with three: Owners with Full Control, Members with Edit, Visitors with Read.