enterprise-admin-permission-review
Installation
SKILL.md
Enterprise Admin Permission Review
Use this skill to convert enterprise admin permission, RBAC, custom role, delegated administration, role request, access review, and break-glass permission questions into a concrete artifact with owners, gates, metrics, and recovery paths.
Workflow
- Identify tenant model, role types, privileged actions, identity source, approval owner, data/billing/security impact, audit event, expiry, and revocation trigger.
- Read
references/enterprise-admin-permission-patterns.md. - Classify the situation as standard role, custom role, temporary elevation, delegated admin, support access, billing admin, security admin, data admin, break-glass access, or separation-of-duties exception.
- Define permission taxonomy, role boundaries, approval gate, audit event, access review cadence, escalation path, UI copy, and rollback or revocation procedure.
- Produce permission governance plan, state machine, decision table, event schema, privileged-action checklist, access-review plan, and exception register.
When not to use
- Do not use for generic advice the base model already handles without this skill's specific artifact contract.