You are here: Reference > Standard rules > Standard privileges

Standard Privileges

 

Your system includes about 150 standard privileges, including those described here. Many standard privileges provide the ability to execute specific, individual standard flow actions and individual standard flows. Alternatively, the AllFlows and AllFlowActions privileges provide access to all the standard flows and all the standard flow actions respectively.

A privilege rule only defines a name. It doesn't convey any capabilities to any user until you associate it with a class and an access role.

Use the Access Manager landing page to work with privileges. You can define privileges for case types on the Work & Process tab and for tools on the Tools tab.

Privilege requirements copied by the Application Express

When you create an application with the Application Express,it creates a flow rule or rules for your new application by copying one of the standard rules named Work-.StandardFlowzzzzz. Each such standard flow rule is restricted to users with privileges named FlowStandardzzzzz, so your application carries forward this restriction in the copied flow rule.

For example, an application produced from the Work-.StandardRequest flow rule creates a custom flow rule restricted to users who hold the FlowStandardRequest privilege. If you determine that your application needs different restrictions or no restrictions on users, remove the privileges from the Process tab of your flows. (The standard privilege AllFlows lets a user start any flow produced by the Application Express.)

For developers and administrators (A-F)

These selected standard privileges are listed alphabetically by Privilege Name, the second key part.

Name

Purpose and Use

More

@baseclass.AutomatedTesting

Allows access to the features of Automated Testing such as creating unit test cases and unit test suites.

About Automated Testing
@baseclass.clipboardViewer

Allows access to the Clipboard tool.

About the Clipboard tool
@baseclass.
clipboardViewerUpdate

Allows updating clipboard values using the Clipboard tool.

About the Clipboard tool
PegaAccel-CEPSetup.
pxEditEventDefinition

Allows a user to view event definitions.

Understanding business event definitions and event processing. Business events are deprecated.
PegaAccel-CEPSetup.
pxViewEventDefinition

Allows a user to edit or create event items.

Understanding business event definitions and event processing
System-Locks.
DeleteMyLock

This requestor is permitted to unlock any lock that it acquired earlier.

lock

For developers and administrators (G-M)

These selected standard privileges are listed alphabetically by Privilege Name, the second key part.

Name

Purpose and Use

More

Rule-Connect-JMS.
JMSPutTremoveMessages

Execution of Connect JMS rules.

About Connect JMS rules
Rule-Connect-JMS.
JMSBrowseMessaages

Execution of Connect JMS rules.

About Connect JMS rules
Rule-Connect-MQ.
MQPutRemoveMessages

Execution of Connect MQ rules.

About Connect MQ rules
Rule-Connect-MQ.
MQBrowseMessages

Execution of Connect MQ rules.

About Connect MQ rules

For developers and administrators (N-T)

These selected standard privileges are listed alphabetically by Privilege Name, the second key part.

Name

Purpose and Use

More

@baseclass.
OpenDeveloperForm

Allows access to the full version of certain rule forms primarily used by business architects, including decision tree, Declare Expression, constraints, flow action, service-level agreement, decision table, and case match.

business architect
Code-Pega-.
PerformanceTools

Allows running the Database Tracer gadget.

System category — Performance landing page
@baseclass.
PurgeArchiveConfigure

Allows users to use the Purge/Archive wizard.

About the Purge/Archive wizard
Rule-.pxAllowPrivateCheckout

Allows users to use private check-out/check-in

Understanding checkout and your personal RuleSet
@baseclass.
pxAllowWarningJustification

Allows users to justify warnings in rule and data instances.

 
@baseclass.
pxClasstoDbTableOptimization

Allows users to create database tables for new Class rules.

Class form — Completing the Advanced tab
@baseclass.
pxPropertytoDBColumnOptimization

Allows use of the Property Optimization tool.

 
@baseclass.
ReconcileBrokenQueueItems

Allows an administrator to resubmit queue items which have failed more than the specified count.

Queue-for-Agent method
@baseclass.
ReconcileProblemWork
(and similar others)

Allows use of the Flow Error reports on the Processes gadget.

Process and Rules category — Processes gadget
@baseclass.SchemaBuilderAllAllowed

Allows users to make changes to any schema objects corresponding to a class.

Note: This privilege is meant to be used on PostgreSQL on the cloud.

 
@baseclass.SchemaImport

Allows developers to apply database schema changes during use of the Import wizard.

 
@baseclass.
SchemaManagementExplicit

Provides access to landing page gadgets

 
@baseclass.
SchemaPropertyOptimization

Allows use of the Property Optimization tool.

 
@baseclass.
SchemaTableCreation

Allows automatic creation of a dedicated table for concrete classes inheriting from Work-, Data- and History-.

 
@baseclass.ToolbarFull

Provides access to specific functions on the toolbar.

Designer Studio — Using the toolbar
@baseclass.ToolbarNew

Provides access to the New button on the toolbar.

Designer Studio — Using the toolbar
@baseclass.ToolbarPreview

Provides access to the Preview button on the toolbar.

Designer Studio — Using the toolbar
@baseclass.ToolbarRun

Provides access to the Run button on the toolbar.

How to unit test a rule with the Run toolbar button
@baseclass.ToolbarSaveAs

Provides access to the Save as button on the toolbar.

Designer Studio — Using the toolbar

For developers and administrators (U-Z)

These selected standard privileges are listed alphabetically by Privilege Name, the second key part.

Name

Purpose and Use

More

Rule-.UpdatePrivateRuleSets

Allows this developer to use a flow for check-in (and update rules in personal RuleSets other than their own).

How to use the Rule Check-in approval process
@baseclass.
UserFeedback
   
@baseclass.
ViewAndOptimizeSchema

Allows this developer to use the Database Schema Optimization gadget, and to view the DDL when using the Import wizard.

System category — Database landing page and System Category — Upgrade page
@baseclass.ViewProDex

Allows the developer to see and use the Show Policy Overrides button on the Diagram tab of the Flow form.

Understanding policy overrides and suspended work items
@baseclass.zipMoveExport

Allows use of the Import gadget.

Application category — Import and Export page
@baseclass.zipMoveImport

Allows use of the Import gadget

Application category — Import and Export page
@baseclass.zipMoveSkim

Allows the user to use the RuleSet Skim operation

skim

For users and managers (A-F)

These selected standard privileges are listed alphabetically by Privilege Name, the second key part.

Name

Purpose and Use

More

@baseclass.AddtoDictionary

Allows a user to add a word to the user spellchecking dictionary.

How to enable spellchecking in user forms
Work-.
AccessAuditTrail

Controls whether the History button and the Attachments button appear on user forms (when configured) for this requestor.

Understanding work item attachments
Work-.
Actionzzzzzz

This requestor has the ability to select the standard flow action named zzzzzz, when it is configured in a flow rule.

 
Work-.
AllFlows

This requestor has the ability to start execution of all the standard and custom flows produced directly by the Application Express tool.

 
Work-.
AllFlowActions

This requestor has the ability to select any standard flow actions configured in a flow rule.

 
Work-.
DeleteAnyAttachment

Deprecated for new development. Use attachment category rules.

About Attachment Category rules.
Work-.DeleteOnlyOwnAttachment

Deprecated for new development. Use attachment category rules.

About Attachment Category rules.
Work-.
FlowStandardzzzzzz

This requestor has the ability to start the standard flow rule named zzzzzz, or a custom flow rule copied from Standardzzzzzz by the Application Express tool.

 

For users and managers (G-T)

These selected standard privileges are listed alphabetically by Privilege Name, the second key part.

Name

Purpose and Use

More

Work-.
Perform

Lets a user perform assignments that appear on worklists other than her own worklist, and the ability to interact with the Where-Am-I? display.

Where-Am-I?
Work-.
PerformBulk

Allows the user to apply one flow action to all or some assignments in a workbasket or worklist at once.

 
Work-.
pyCaseInstitutionalize

Allows the user to convert ad hoc work into a case type.

ad hoc work
Work-.
Reopen

Controls whether the Reopen button appears on work object forms (when configured) for this requestor.

Reopening a resolved case
Work-.ReviewPolicyOverrides

Allows the operator to update work items which are business exceptions with a status Pending-PolicyOverrides.

 
@baseclass.pxViewLimitedForm

Allows users to display a rule form or data form, such as their own Operator ID or a form for a delegated rule.

How to delegate a rule
@baseclass.
ShowStoredValues

Allows users of list view or summary view reports to pick criteria values at run time.

List View form — Completing the Content tab

For users and managers (U-Z)

These selected standard privileges are listed alphabetically by Privilege Name, the second key part.

Name

Purpose and Use

More

@baseclass.
UpdateLimitedForm

Allows access to delegated rules primarily used by business analysts, including decision tree, declare expression, constraints, flow action, service-level agreement, decision table, and case match.

How to delegate a rule
Data-Admin-Operator-ID.
UpdateWorkgroup
Availability

Allows changes to the availability and scheduled absence information in an Operator ID data instance. This privilege is normally available to work managers.

 
Data-Admin-Operator-ID.
UpdateSkills

Allows requestors to change to the skills array information in their own Operator ID data instance.

skill
Data-Admin-Operator-ID.UpdateWorkGroupSkills

Allows requestors to changes to the skills array information in any Operator ID data instance associated with their work group. This privilege is normally available to work managers.

skill
Work-.
Update

This requestor may update unresolved work items.