Skip to content

Administration

Teams and roles

Assign least-privilege Cortex access to users and administrators.

Use organization roles to separate ordinary product use, project ownership, security review, billing and enterprise administration. Only authorized administrators can change organization-wide policy and access settings.

Review role assignments regularly and remove access when responsibilities change. Connector authorization and repository permissions are evaluated in addition to the Cortex role; an admin role does not automatically grant source access.

For approvals, prefer the user responsible for the affected resource. Audit history should identify the approver and the version of the work that was reviewed.