Control who can act
Use role-based permissions to control who can view, create, edit, and publish across sites, folders, content types, and individual content. Permissions can inherit through the content hierarchy, while SAML can synchronize roles from your identity provider.
AI-assisted operations through the dotCMS MCP server use permissioned API credentials, extending the same access controls to automated actions.