[[["Easy to understand","easyToUnderstand","thumb-up"],["Solved my problem","solvedMyProblem","thumb-up"],["Other","otherUp","thumb-up"]],[["Missing the information I need","missingTheInformationINeed","thumb-down"],["Too complicated / too many steps","tooComplicatedTooManySteps","thumb-down"],["Out of date","outOfDate","thumb-down"],["Samples / code issue","samplesCodeIssue","thumb-down"],["Other","otherDown","thumb-down"]],["Last updated 2025-08-28 UTC."],[],[],null,["This page lists the IAM roles and permissions for Access Transparency. To\nsearch through all roles and permissions, see the [role and\npermission index](/iam/docs/roles-permissions).\n\nAccess Transparency roles\n\n| Role | Permissions |\n|-------------------------------------------------------------------------------------------------------------------------------------------------------------|------------------------------------------------------------------------------------------------------------------------------------------------------|\n| Access Transparency Admin (`roles/``axt.admin`) Enable Access Transparency for Organization Lowest-level resources where you can grant this role: - Project | `axt.*` - `axt.labels.get` - `axt.labels.set` `resourcemanager.``organizations.``get` `resourcemanager.projects.get` `resourcemanager.projects.list` |\n\nAccess Transparency permissions\n\n| Permission | Included in roles |\n|------------------|-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|\n| `axt.labels.get` | [Access Transparency Admin](/iam/docs/roles-permissions/axt#axt.admin) (`roles/``axt.admin`) Service agent roles | **Warning:** Don't grant service agent roles to any principals except [service agents](/iam/docs/service-agents). - [Cloud Security Compliance Service Agent](/iam/docs/roles-permissions/cloudsecuritycompliance#cloudsecuritycompliance.serviceAgent) (`roles/``cloudsecuritycompliance.serviceAgent`) |\n| `axt.labels.set` | [Assured Workloads Administrator](/iam/docs/roles-permissions/assuredworkloads#assuredworkloads.admin) (`roles/``assuredworkloads.admin`) [Assured Workloads Editor](/iam/docs/roles-permissions/assuredworkloads#assuredworkloads.editor) (`roles/``assuredworkloads.editor`) [Access Transparency Admin](/iam/docs/roles-permissions/axt#axt.admin) (`roles/``axt.admin`) |"]]