Skip to content

Commit 722fda3

Browse files
Revert "Revert "[Email Security] Add note to ZT doc""
This reverts commit f421929.
1 parent 6e3ab3b commit 722fda3

File tree

1 file changed

+6
-0
lines changed

1 file changed

+6
-0
lines changed

src/content/docs/cloudflare-one/roles-permissions.mdx

Lines changed: 6 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -9,6 +9,8 @@ When creating a Cloudflare Zero Trust account, you will be given the Super Admin
99

1010
To check the list of members in your account, or to manage roles and permissions, refer to our [Account setup](/fundamentals/setup/manage-members/) documentation.
1111

12+
13+
1214
## Zero Trust roles
1315

1416
Only Super Administrators will be able to assign or remove the following roles from users in their account. Scroll to the right to see a full list of permissions for each role.
@@ -22,6 +24,10 @@ Only Super Administrators will be able to assign or remove the following roles f
2224
| Cloudflare Zero Trust Read Only ||||||||
2325
| Cloudflare Zero Trust Reporting ||||||||
2426

27+
:::note
28+
The Cloudflare Zero Trust role grants administrator access to all Zero Trust products including Access, Gateway, WARP, Tunnel, Browser Isolation, CASB, DLP, DEX, and Email Security.
29+
:::
30+
2531
### Cloudflare Zero Trust PII
2632

2733
By default, only Super Administrators can view end users' PII in the Gateway activity logs, such as Device IDs, Source IPs, or user emails. No other roles will have the ability to read PII unless Super Administrators explicitly assign the **Cloudflare Zero Trust PII** role to them.

0 commit comments

Comments
 (0)