How to use Access Permission Matrix Auditor
- Supply the access model as json using the supported input described beside the controls.
- Review the selected options and the declared scope, then run the access permission matrix auditor.
- Read the result and unresolved findings before downloading or sharing a report. The original input is not changed.
Example: Access Permission Matrix Auditor
Compare user-entered roles/resources/actions to find uncovered or contradictory grants. This example uses synthetic public data.
Options
- Dimensions and rules
- Declare the supported roles, resources and actions before applying exact or supported wildcard rules. Unknown names must be corrected.
- Effective cells
- A denial overrides a matching allowance in this model. A cell with no allowance remains denied rather than inheriting an assumed permission.
Supported inputs and limits
Where your input is processed
This tool processes your input in this browser. Your text and files are not uploaded to UseFreeTools. Check this tool's limits for anything it may save on your device.
The precedence rule is part of the result
This model uses its declared deny-overrides policy and default denial. It can show contradictory rules or uncovered cells, but another authorization system may use different inheritance or precedence. Keep the model and result together when reviewing an intended policy; no account or permission is changed.
Questions about Access Permission Matrix Auditor
Which conflicting rule wins?
The page’s declared model uses deny-overrides; another system may differ.
What happens without a grant?
The model defaults to denial.
Will it change user access?
No. It generates a review matrix from entered declarations.