---
sourceDocument: Brazil Platform Analytics
sourceDocumentLink: https://www.servicenow.com/docs/r/now-intelligence

 Release :

    - brazil

ft:locale :

    - en-US

ft:publication_title :

    - Brazil Platform Analytics

ft:clusterId :

    - par

bundleId :

    - par

workflow :

    - Platform


---

# Dashboard permissions

# Dashboard permissions {#ariaid-title1}

Release version: Brazil  
Updated September 10, 2026  
![](https://www.servicenow.com/docs/portal-asset/ico-clock) 4 minutes to read
Summarize  
![AI sparkle icon](https://servicenow.com/docs/portal-asset/ai-sparkle-icon) Summarized using AI  
This content was generated using new OpenAI-powered functionality. Results are provided on an as is basis and are not guaranteed to be accurate or complete.  

## Summary of Dashboard permissions

Dashboard permissions in ServiceNow are managed through the Sharing pane and involve granular view and edit controls.
Access control lists (ACLs) govern most widgets on dashboards, ensuring that users can only interact with data they have rights to.
Dashboard creation, sharing, editing, and deletion privileges depend on the user's roles and ownership status.
Additionally, domain separation, explicit roles, and administrator settings can further influence dashboard access and editing capabilities.
Show full answer Show less  

## Key Permissions and Roles

* **No role:** Can only view dashboards shared with them; cannot create, edit, share, or delete dashboards.
* **Any role:** Can create dashboards, view their own and shared dashboards, and edit dashboards they own or have edit rights to (except adding/removing Performance Analytics widgets without papoweruser rights). Can share with users and groups, subject to administrator limits.
* **papoweruser and paadmin:** Can add/remove Performance Analytics widgets, manage users, groups, and roles on dashboards they can edit.
* **dashboardadmin and admin:** Have full rights to edit, manage ownership, users, groups, roles, and delete any dashboard.
* **Dashboard owner:** Can edit, share (subject to admin restrictions), and delete their own dashboards.

## Widget and Data Access Controls

* ACLs apply to most widgets except Performance Analytics widgets; users without widget access see empty placeholders.
* ACLs always apply to list data in widgets, restricting visibility of individual rows based on permissions.
* Performance Analytics widgets are viewable by any dashboard viewer but can only be added by users with papoweruser, paadmin, or admin roles.
* Real-time scores in Performance Analytics widgets respect user roles and ACLs on underlying data.

## Additional Considerations

* The Restrict to role setting and dashboard group permissions affect dashboard access and can be managed by owners and certain roles (papoweruser, paadmin, admin).
* Administrators can limit sharing capabilities and dashboard editing depending on organizational policies.
* Domain separation and explicit roles may restrict dashboard visibility and editing rights based on user domains or external access roles.

## Practical Impact for ServiceNow Customers

Understanding dashboard permissions is critical for managing who can create, modify, share, or delete dashboards in your instance. Assigning appropriate roles ensures users have the right level of interaction with dashboards and their widgets, particularly when dealing with sensitive data or Performance Analytics content. Administrators should consider domain separation and explicit role settings to fine-tune access, while users must be aware that widget ACLs can limit visible data even if a dashboard is accessible. This framework supports secure and effective dashboard collaboration and data visualization across your organization.  
Dashboards have special granular view and edit permissions that are managed from the
Sharing pane. Access control lists (ACLs) apply to most widgets that are added to
dashboards.  
* Users with any role can create dashboards, share dashboards that they own with users and groups, and edit dashboards if they have been given edit permissions. Users with any role can restrict access by role to any dashboard that they have created. The user also needs whatever roles are necessary to access the specific data on the dashboards.
* Users without a role can view dashboards that have been shared with them, but cannot create or edit dashboards.
* Users with pa_admin and pa_power_user roles can manage users, groups, and roles on any dashboard that they can edit. For more information, see [Performance Analytics roles](https://www.servicenow.com/docs/RPeQ3WrK~RwGzTluUnw_tw "Assign roles to ensure that users can perform all necessary actions.").
* Users with the dashboard_admin or admin role can edit and manage users, groups, and roles for any dashboard. Admin and dashboard_admin users can also change a dashboard owner at any time.
* Only a dashboard owner and users with the dashboard_admin or admin role can delete that dashboard.
* The ability of users to share dashboards may be limited by the administrator. For more information, see [Responsive dashboard properties](https://www.servicenow.com/docs/govOpimbrLQhg2aVhSOjeA "Use properties to fine-tune dashboard behavior and appearance.").
* If Explicit Roles are activated, dashboards are treated as internal resources. Users with the snc_external role cannot view dashboards by default. For more information, see [Explicit Roles](https://www.servicenow.com/docs/access?context=explicit-roles&version=brazil&pubname=brazil-platform-security&ft:locale=en-US).
* Domain separation can affect the ability of users to edit dashboards that have been shared with them. For more information, see [Domain separation and responsive dashboards](https://www.servicenow.com/docs/m5bcoXjCwnw1f1pdzyAEeA "Domain separation is supported in dashboard creation and administration. Domain separation enables you to separate data, processes, and administrative tasks into logical groupings called domains. You can control several aspects of this separation, including which users can see and access data.").
{#c_DashboardRoles__ul_kvc_zyz_zw}
{#c_DashboardRoles__table_y5q_kgs_25b__entry__6}

|   | View | Create | Edit | Share | Delete |
|-|-|-|-|-|-|
| No role | Only dashboards that have been shared with them. | No | No | No | No |
| Any role | Dashboards that they create and that have been shared with them. | Yes | Only dashboards they have created or that have been shared with them with edit rights. Cannot add or remove Performance Analytics widgets without at least pa_power_user rights. | Only dashboards they have created and only with users and groups. The ability of users to share dashboards may be limited by the administrator. For more information, see [Responsive dashboard properties](https://www.servicenow.com/docs/govOpimbrLQhg2aVhSOjeA "Use properties to fine-tune dashboard behavior and appearance."). | Only dashboards they own or have created. |
| admin | All | Yes | Edit and manage dashboard owners, users, groups, and roles for any dashboard. | Yes | Any dashboard |
| dashboard_admin | All | Yes | Edit and manage dashboard owners, users, groups, and roles for any dashboard. | Yes | Any dashboard |
| pa_admin | Dashboards that they create and that have been shared with them. | Yes | Only dashboards they have created or that have been shared with them with edit rights. Can add or remove Performance Analytics widgets. | Only dashboards they have created and only with users and groups. The ability of users to share dashboards may be limited by the administrator. For more information, see [Responsive dashboard properties](https://www.servicenow.com/docs/govOpimbrLQhg2aVhSOjeA "Use properties to fine-tune dashboard behavior and appearance."). | Only dashboards they own or have created. |
| pa_power_user | Dashboards that they create and that have been shared with them. | Yes | Only dashboards they have created or that have been shared with them with edit rights. Can add or remove Performance Analytics widgets. | Only dashboards they have created and only with users and groups. The ability of users to share dashboards may be limited by the administrator. For more information, see [Responsive dashboard properties](https://www.servicenow.com/docs/govOpimbrLQhg2aVhSOjeA "Use properties to fine-tune dashboard behavior and appearance."). | Only dashboards they own or have created. |
| Dashboard owner | Yes | N/A | Yes | Yes. The ability of users to share dashboards may be limited by the administrator. For more information, see [Responsive dashboard properties](https://www.servicenow.com/docs/govOpimbrLQhg2aVhSOjeA "Use properties to fine-tune dashboard behavior and appearance."). | Only dashboards they have created. |
[Table 1. Dashboard permissions and roles]

{#c_DashboardRoles__table_y5q_kgs_25b}

Widget ACLs apply when that widget is added to dashboards (except for Performance Analytics widgets). If a user can
view a dashboard but does not have ACLs to view one of its widgets, an empty widget placeholder
is displayed. ACLs do not apply to data visualizations that aggregate data, such as pie or bar
reports. ACLs always apply to list data that is displayed in widgets. Rows in a list that a user
does not have access to are not displayed.  
Note:  
ACLs are not applied to Performance Analytics widgets that are added to dashboards. Any user who can view a dashboard can view all its Performance Analytics widgets. Performance Analytics widgets can only be added to dashboards by users with the pa_power_user, pa_admin, and admin roles.

However, if a Performance Analytics widget displays real-time scores, the score each
logged-in user sees depends on their roles and the ACLs of the facts table. For more
information, see [Real-time scores](https://www.servicenow.com/docs/079pC1q7dszYj4pM9c3Azg "You can view some Performance Analytics scores in real-time instead of from the most recent data collection job. If real-time scores are enabled, you can view them in KPI Details and in some data visualizations.").

The Restrict to role field on the dashboard properties form and
dashboard group permissions may have an impact on dashboard permissions. The dashboard owner, and
users with pa_power _user, pa_admin, or admin roles can change dashboard properties. Users with
the pa_power_user, pa_admin, and admin roles can change dashboard group permissions.  
For example, when you add a pie report widget with 36 records to a dashboard, users who can access to that dashboard and that report can view the report of all 36 records. However, if a user drills down into the list view for that widget, only the records the user is allowed to access are visible.
**Related concepts**   

* [Administering reports](https://www.servicenow.com/docs/1lkg9p7f3I8ImvxIQhy0cA "Learn about the tasks report administrators typically perform, the objects that they work with, and the roles and rules that apply.")  
**Related tasks**   

* [Restrict responsive dashboard access to specific roles](https://www.servicenow.com/docs/Rgj9e37tA6joZwZ91s7aXA "Specify additional roles required to access the dashboard when you share a dashboard with specified users, groups, and roles. Only users who the dashboard has been shared with and who have one of the specified roles can access the dashboard.")
* [Organize dashboards into groups](https://www.servicenow.com/docs/_77My70mnKPprRozQUOEcw#t_GroupDashboards "Assign dashboards to groups so that users can find the dashboards they want more easily. Dashboard groups determine how dashboards appear in the dashboard picker when you navigate to Self-Service > Dashboards . You can also add view permissions to dashboard groups.")  
**Related reference**   

* [Performance Analytics roles](https://www.servicenow.com/docs/RPeQ3WrK~RwGzTluUnw_tw "Assign roles to ensure that users can perform all necessary actions.")

