Microsoft Fabric · Workspace Roles

Member

Add members or others with lower permissions and reshare items. Full item authoring rights but cannot delete the workspace or manage workspace identity.

Scope: Single Fabric workspace - authoring and contribution

Permissions

  • Members - Add Members, Contributors, Viewers (but not Admins)
  • Reshare - Allow others to reshare items
  • Items - Create, modify, write, and delete all item types
  • Read all data - OneLake APIs, Spark, TDS endpoints, Lakehouse explorer
  • Execute - Run notebooks, pipelines, Spark jobs, ML experiments
  • Gateways - Schedule refreshes and modify gateway connection settings

Common use cases

  • Senior data engineers or analysts on a team
  • Day-to-day workspace operations without admin responsibility

Best practices

  • Default role for trusted workspace participants who don't need workspace lifecycle access

Official Microsoft Learn documentation →

Open the interactive RBACMap →