# Data Room Access Manager

See and change who can reach any Kiteworks file or folder — data-room access in one place.

The file-level counterpart to Folder Member Manager. Lists who has access to a given file OR folder and at what level, then grants, changes, or revokes access — ideal for locking down and auditing data rooms. Every change is proposed for review and written back through the audited Compliance Runtime.

**Category:** Access & Sharing

## Required scopes

- `list:files`
- `list:folders` -- Enumerate folders under the configured roots.
- `read:permissions` -- Read folder membership and access-right grants.
- `write:permissions` -- Add, update, or revoke folder access rights (mutating).
- `audit:write` -- Append events to the tenant audit ledger.

## Safety posture

- Read-only: no
- Write scope: File and folder access grants only — never file content.
- Data egress: metadata-only
- ABAC required: yes
- Audit emission: required

Install: see https://agents.kiteworks.com/catalog/access-assignment for current setup steps.

Canonical URL: https://agents.kiteworks.com/catalog/access-assignment
