VOL IV · Nº 207FRIDAY · MAY 15 · 20261 FLAG OPEN
The RFPRoom Quarterly
Pinegate Software · published by uStack
RFP-2031 · Security

Q-2031-S04 — Describe your access control model.

Status Approved. Reviewer: Diego Ortega.

Approved answer
Approved by Diego Ortega on May 14, 2026 5:56 PM.

Role-based access control with the principle of least privilege. Standard roles include Viewer, Contributor, Approver, and Workspace Admin. Customers can also define custom roles via API. Permissions are evaluated at request time; every authorization decision is logged with the requesting principal, resource, and decision rationale.

Question metadata
Category: Security
Status: Approved
Drafts: 1
Reviews: 1
Draft history (1)
Every authored version, source library link, and the snippet citations attached.
  • v1Approvedmatched LIB-SEC-003May 16, 2026 5:56 PM

    Role-based access control with the principle of least privilege. Standard roles include Viewer, Contributor, Approver, and Workspace Admin. Customers can also define custom roles via API. Permissions are evaluated at request time; every authorization decision is logged with the requesting principal, resource, and decision rationale.

    Rationale: AI-matched against LIB-SEC-003; reviewed verbatim.

Reviewer decisions (1)
Sign-offs and rationale per reviewer.
  • Diego Ortegasecurity_reviewerApprovedMay 13, 2026 5:56 PM

    Verified against trust portal documentation; no changes.

Acting as Nina Vega · VP salesswitch role →