Microsoft Power Platform · Dataverse Security Roles

Delegate

Run apps and flows on behalf of another user. Used by Power Automate child flows and impersonation scenarios.

Scope: Single Dataverse environment - impersonation only

Permissions

  • Impersonation - Act on behalf of another user in Dataverse
  • Used by Power Automate "Run as" patterns

Common use cases

  • Service account that runs flows on behalf of users
  • Custom integrations that need elevated impersonation

Security considerations

  • High-trust role - can act as any user it impersonates
  • Audit impersonation usage via Dataverse audit logs

Official Microsoft Learn documentation →

Open the interactive RBACMap →