Firestore roles and permissions
datastore.backupSchedules.create
Owner (roles/)
Editor (roles/)
Cloud Datastore Backup Schedules Admin (roles/)
Cloud Datastore Owner (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Databases Admin (roles/)
datastore.backupSchedules.delete
Owner (roles/)
Editor (roles/)
Cloud Datastore Backup Schedules Admin (roles/)
Cloud Datastore Owner (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Databases Admin (roles/)
datastore.backupSchedules.get
Owner (roles/)
Editor (roles/)
Viewer (roles/)
Cloud Datastore Backup Schedules Admin (roles/)
Cloud Datastore Backup Schedules Viewer (roles/)
Cloud Datastore Owner (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Databases Admin (roles/)
Support User (roles/)
datastore.backupSchedules.list
Owner (roles/)
Editor (roles/)
Viewer (roles/)
Cloud Datastore Backup Schedules Admin (roles/)
Cloud Datastore Backup Schedules Viewer (roles/)
Cloud Datastore Owner (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Databases Admin (roles/)
Security Admin (roles/)
Security Auditor (roles/)
Security Reviewer (roles/)
Support User (roles/)
datastore.backupSchedules.update
Owner (roles/)
Editor (roles/)
Cloud Datastore Backup Schedules Admin (roles/)
Cloud Datastore Owner (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Databases Admin (roles/)
datastore.backups.delete
Owner (roles/)
Editor (roles/)
Cloud Datastore Backups Admin (roles/)
Cloud Datastore Owner (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Databases Admin (roles/)
datastore.backups.get
Owner (roles/)
Editor (roles/)
Viewer (roles/)
Cloud Datastore Backups Admin (roles/)
Cloud Datastore Backups Viewer (roles/)
Cloud Datastore Owner (roles/)
Cloud Datastore Restore Admin (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Firebase Develop Viewer (roles/)
Firebase Viewer (roles/)
Databases Admin (roles/)
Support User (roles/)
datastore.backups.list
Owner (roles/)
Editor (roles/)
Viewer (roles/)
Cloud Datastore Backups Admin (roles/)
Cloud Datastore Backups Viewer (roles/)
Cloud Datastore Owner (roles/)
Cloud Datastore Restore Admin (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Firebase Develop Viewer (roles/)
Firebase Viewer (roles/)
Databases Admin (roles/)
Security Admin (roles/)
Security Auditor (roles/)
Security Reviewer (roles/)
Support User (roles/)
datastore.backups.restoreDatabase
Owner (roles/)
Cloud Datastore Owner (roles/)
Cloud Datastore Restore Admin (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Databases Admin (roles/)
datastore.databases.bulkDelete
Owner (roles/)
Cloud Datastore Bulk Admin (roles/)
Cloud Datastore Owner (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Databases Admin (roles/)
datastore.databases.clone
Owner (roles/)
Cloud Datastore Clone Admin (roles/)
Cloud Datastore Owner (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
datastore.databases.create
Owner (roles/)
Cloud Datastore Clone Admin (roles/)
Cloud Datastore Owner (roles/)
Cloud Datastore Restore Admin (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Databases Admin (roles/)
Service agent roles
-
Firebase Service Management Service Agent (
roles/)firebase.managementServiceAgent
datastore.databases.createTagBinding
Owner (roles/)
Cloud Datastore Owner (roles/)
DLP Organization Data Profiles Driver (roles/)
DLP Project Data Profiles Driver (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Tag User (roles/)
datastore.databases.delete
Owner (roles/)
Cloud Datastore Owner (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
datastore.databases.deleteTagBinding
Owner (roles/)
Cloud Datastore Owner (roles/)
DLP Organization Data Profiles Driver (roles/)
DLP Project Data Profiles Driver (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Tag User (roles/)
datastore.databases.export
Owner (roles/)
Cloud Datastore Import Export Admin (roles/)
Cloud Datastore Owner (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Databases Admin (roles/)
Service agent roles
-
Discovery Engine Service Agent (
roles/)discoveryengine.serviceAgent
datastore.databases.get
Owner (roles/)
Editor (roles/)
Viewer (roles/)
Cloud Datastore Owner (roles/)
Cloud Datastore User (roles/)
Cloud Datastore Viewer (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Firebase Develop Viewer (roles/)
Firebase Admin SDK Administrator Service Agent (roles/)
Firebase Viewer (roles/)
Firebase Rules System (roles/)
Data Scientist (roles/)
Support User (roles/)
Service agent roles
-
Discovery Engine Service Agent (
roles/)discoveryengine.serviceAgent -
DLP API Service Agent (
roles/)dlp.serviceAgent -
Firebase Service Management Service Agent (
roles/)firebase.managementServiceAgent -
App Engine Standard Environment Service Agent (
roles/)appengine.serviceAgent
datastore.databases.getMetadata
Owner (roles/)
Editor (roles/)
Viewer (roles/)
Cloud Datastore Backup Schedules Admin (roles/)
Cloud Datastore Bulk Admin (roles/)
Cloud Datastore Clone Admin (roles/)
Cloud Datastore Import Export Admin (roles/)
Cloud Datastore Index Admin (roles/)
Cloud Datastore Key Visualizer Viewer (roles/)
Cloud Datastore Owner (roles/)
Cloud Datastore Restore Admin (roles/)
Cloud Datastore User (roles/)
Cloud Datastore User Creds Admin (roles/)
Cloud Datastore Viewer (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Firebase Develop Viewer (roles/)
Firebase Admin SDK Administrator Service Agent (roles/)
Firebase Viewer (roles/)
Data Scientist (roles/)
Databases Admin (roles/)
Support User (roles/)
Service agent roles
-
DLP API Service Agent (
roles/)dlp.serviceAgent -
Firebase Service Management Service Agent (
roles/)firebase.managementServiceAgent -
Discovery Engine Service Agent (
roles/)discoveryengine.serviceAgent
datastore.databases.import
Owner (roles/)
Cloud Datastore Import Export Admin (roles/)
Cloud Datastore Owner (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Databases Admin (roles/)
datastore.databases.list
Owner (roles/)
Editor (roles/)
Viewer (roles/)
Cloud Datastore Backup Schedules Admin (roles/)
Cloud Datastore Clone Admin (roles/)
Cloud Datastore Owner (roles/)
Cloud Datastore Restore Admin (roles/)
Cloud Datastore User (roles/)
Cloud Datastore User Creds Admin (roles/)
Cloud Datastore Viewer (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Firebase Develop Viewer (roles/)
Firebase Admin SDK Administrator Service Agent (roles/)
Firebase Viewer (roles/)
Data Scientist (roles/)
Databases Admin (roles/)
Security Admin (roles/)
Security Auditor (roles/)
Security Reviewer (roles/)
Support User (roles/)
Service agent roles
-
Firebase Service Management Service Agent (
roles/)firebase.managementServiceAgent -
DLP API Service Agent (
roles/)dlp.serviceAgent
datastore.databases.listEffectiveTags
Owner (roles/)
Editor (roles/)
Viewer (roles/)
Cloud Datastore Owner (roles/)
DLP Organization Data Profiles Driver (roles/)
DLP Project Data Profiles Driver (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Security Auditor (roles/)
Support User (roles/)
Tag User (roles/)
Tag Viewer (roles/)
datastore.databases.listTagBindings
Owner (roles/)
Editor (roles/)
Viewer (roles/)
Cloud Datastore Owner (roles/)
DLP Organization Data Profiles Driver (roles/)
DLP Project Data Profiles Driver (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Security Auditor (roles/)
Support User (roles/)
Tag User (roles/)
Tag Viewer (roles/)
datastore.databases.update
Owner (roles/)
Editor (roles/)
Cloud Datastore Owner (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Service agent roles
-
Firebase Service Management Service Agent (
roles/)firebase.managementServiceAgent
datastore.entities.allocateIds
Owner (roles/)
Editor (roles/)
Cloud Datastore Owner (roles/)
Cloud Datastore User (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Firebase Admin SDK Administrator Service Agent (roles/)
Firebase Rules System (roles/)
Service agent roles
-
DLP API Service Agent (
roles/)dlp.serviceAgent
datastore.entities.create
Owner (roles/)
Editor (roles/)
Cloud Datastore Owner (roles/)
Cloud Datastore User (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Firebase Admin SDK Administrator Service Agent (roles/)
Firebase Rules System (roles/)
Service agent roles
-
DLP API Service Agent (
roles/)dlp.serviceAgent -
App Engine Standard Environment Service Agent (
roles/)appengine.serviceAgent
datastore.entities.delete
Owner (roles/)
Editor (roles/)
Cloud Datastore Owner (roles/)
Cloud Datastore User (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Firebase Admin SDK Administrator Service Agent (roles/)
Firebase Rules System (roles/)
Service agent roles
-
DLP API Service Agent (
roles/)dlp.serviceAgent -
App Engine Standard Environment Service Agent (
roles/)appengine.serviceAgent
datastore.entities.get
Owner (roles/)
Editor (roles/)
Viewer (roles/)
Cloud Datastore Owner (roles/)
Cloud Datastore User (roles/)
Cloud Datastore Viewer (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Firebase Develop Viewer (roles/)
Firebase Admin SDK Administrator Service Agent (roles/)
Firebase Viewer (roles/)
Firebase Rules System (roles/)
Data Scientist (roles/)
Support User (roles/)
Service agent roles
-
DLP API Service Agent (
roles/)dlp.serviceAgent -
Firebase Rules Firestore Service Agent (
roles/)firebaserules.firestoreServiceAgent -
App Engine Standard Environment Service Agent (
roles/)appengine.serviceAgent
datastore.entities.list
Owner (roles/)
Editor (roles/)
Viewer (roles/)
Cloud Datastore Owner (roles/)
Cloud Datastore User (roles/)
Cloud Datastore Viewer (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Firebase Develop Viewer (roles/)
Firebase Admin SDK Administrator Service Agent (roles/)
Firebase Viewer (roles/)
Firebase Rules System (roles/)
Data Scientist (roles/)
Security Admin (roles/)
Security Auditor (roles/)
Security Reviewer (roles/)
Support User (roles/)
Service agent roles
-
DLP API Service Agent (
roles/)dlp.serviceAgent -
App Engine Standard Environment Service Agent (
roles/)appengine.serviceAgent
datastore.entities.update
Owner (roles/)
Editor (roles/)
Cloud Datastore Owner (roles/)
Cloud Datastore User (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Firebase Admin SDK Administrator Service Agent (roles/)
Firebase Rules System (roles/)
Service agent roles
-
DLP API Service Agent (
roles/)dlp.serviceAgent -
App Engine Standard Environment Service Agent (
roles/)appengine.serviceAgent
datastore.indexes.create
Owner (roles/)
Editor (roles/)
Cloud Datastore Index Admin (roles/)
Cloud Datastore Owner (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Databases Admin (roles/)
datastore.indexes.delete
Owner (roles/)
Editor (roles/)
Cloud Datastore Index Admin (roles/)
Cloud Datastore Owner (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Databases Admin (roles/)
datastore.indexes.get
Owner (roles/)
Editor (roles/)
Viewer (roles/)
Cloud Datastore Index Admin (roles/)
Cloud Datastore Owner (roles/)
Cloud Datastore Viewer (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Firebase Develop Viewer (roles/)
Firebase Admin SDK Administrator Service Agent (roles/)
Firebase Viewer (roles/)
Data Scientist (roles/)
Databases Admin (roles/)
Support User (roles/)
datastore.indexes.list
Owner (roles/)
Editor (roles/)
Viewer (roles/)
Cloud Datastore Index Admin (roles/)
Cloud Datastore Owner (roles/)
Cloud Datastore User (roles/)
Cloud Datastore Viewer (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Firebase Develop Viewer (roles/)
Firebase Admin SDK Administrator Service Agent (roles/)
Firebase Viewer (roles/)
Data Scientist (roles/)
Databases Admin (roles/)
Security Admin (roles/)
Security Auditor (roles/)
Security Reviewer (roles/)
Support User (roles/)
Service agent roles
-
DLP API Service Agent (
roles/)dlp.serviceAgent -
App Engine Standard Environment Service Agent (
roles/)appengine.serviceAgent
datastore.indexes.update
Owner (roles/)
Editor (roles/)
Cloud Datastore Index Admin (roles/)
Cloud Datastore Owner (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Databases Admin (roles/)
datastore.insights.get
Owner (roles/)
Editor (roles/)
Viewer (roles/)
Cloud Datastore Owner (roles/)
Cloud Datastore Viewer (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Firebase Admin SDK Administrator Service Agent (roles/)
Data Scientist (roles/)
Support User (roles/)
datastore.keyVisualizerScans.get
Owner (roles/)
Editor (roles/)
Viewer (roles/)
Cloud Datastore Key Visualizer Viewer (roles/)
Cloud Datastore Owner (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Support User (roles/)
datastore.keyVisualizerScans.list
Owner (roles/)
Editor (roles/)
Viewer (roles/)
Cloud Datastore Key Visualizer Viewer (roles/)
Cloud Datastore Owner (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Security Admin (roles/)
Security Auditor (roles/)
Security Reviewer (roles/)
Support User (roles/)
datastore.locations.get
Owner (roles/)
Cloud Datastore Owner (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Service agent roles
-
Firebase Service Management Service Agent (
roles/)firebase.managementServiceAgent
datastore.locations.list
Owner (roles/)
Cloud Datastore Owner (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Security Admin (roles/)
Security Auditor (roles/)
Security Reviewer (roles/)
Service agent roles
-
Firebase Service Management Service Agent (
roles/)firebase.managementServiceAgent
datastore.namespaces.get
Owner (roles/)
Editor (roles/)
Viewer (roles/)
Cloud Datastore Owner (roles/)
Cloud Datastore User (roles/)
Cloud Datastore Viewer (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Firebase Develop Viewer (roles/)
Firebase Admin SDK Administrator Service Agent (roles/)
Firebase Viewer (roles/)
Data Scientist (roles/)
Support User (roles/)
Service agent roles
-
DLP API Service Agent (
roles/)dlp.serviceAgent -
App Engine Standard Environment Service Agent (
roles/)appengine.serviceAgent
datastore.namespaces.list
Owner (roles/)
Editor (roles/)
Viewer (roles/)
Cloud Datastore Owner (roles/)
Cloud Datastore User (roles/)
Cloud Datastore Viewer (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Firebase Develop Viewer (roles/)
Firebase Admin SDK Administrator Service Agent (roles/)
Firebase Viewer (roles/)
Data Scientist (roles/)
Security Admin (roles/)
Security Auditor (roles/)
Security Reviewer (roles/)
Support User (roles/)
Service agent roles
-
DLP API Service Agent (
roles/)dlp.serviceAgent -
App Engine Standard Environment Service Agent (
roles/)appengine.serviceAgent
datastore.operations.cancel
Owner (roles/)
Cloud Datastore Bulk Admin (roles/)
Cloud Datastore Import Export Admin (roles/)
Cloud Datastore Owner (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Databases Admin (roles/)
datastore.operations.delete
Owner (roles/)
Cloud Datastore Owner (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
datastore.operations.get
Owner (roles/)
Editor (roles/)
Viewer (roles/)
Cloud Datastore Bulk Admin (roles/)
Cloud Datastore Clone Admin (roles/)
Cloud Datastore Import Export Admin (roles/)
Cloud Datastore Index Admin (roles/)
Cloud Datastore Owner (roles/)
Cloud Datastore Restore Admin (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Databases Admin (roles/)
Support User (roles/)
Service agent roles
-
Firebase Service Management Service Agent (
roles/)firebase.managementServiceAgent -
Discovery Engine Service Agent (
roles/)discoveryengine.serviceAgent
datastore.operations.list
Owner (roles/)
Editor (roles/)
Viewer (roles/)
Cloud Datastore Bulk Admin (roles/)
Cloud Datastore Clone Admin (roles/)
Cloud Datastore Import Export Admin (roles/)
Cloud Datastore Index Admin (roles/)
Cloud Datastore Owner (roles/)
Cloud Datastore Restore Admin (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Databases Admin (roles/)
Security Admin (roles/)
Security Auditor (roles/)
Security Reviewer (roles/)
Support User (roles/)
Service agent roles
-
Firebase Service Management Service Agent (
roles/)firebase.managementServiceAgent
datastore.statistics.get
Owner (roles/)
Editor (roles/)
Viewer (roles/)
Cloud Datastore Owner (roles/)
Cloud Datastore User (roles/)
Cloud Datastore Viewer (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Firebase Develop Viewer (roles/)
Firebase Admin SDK Administrator Service Agent (roles/)
Firebase Viewer (roles/)
Data Scientist (roles/)
Support User (roles/)
Service agent roles
-
DLP API Service Agent (
roles/)dlp.serviceAgent -
App Engine Standard Environment Service Agent (
roles/)appengine.serviceAgent
datastore.statistics.list
Owner (roles/)
Editor (roles/)
Viewer (roles/)
Cloud Datastore Owner (roles/)
Cloud Datastore User (roles/)
Cloud Datastore Viewer (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Firebase Develop Viewer (roles/)
Firebase Admin SDK Administrator Service Agent (roles/)
Firebase Viewer (roles/)
Data Scientist (roles/)
Security Admin (roles/)
Security Auditor (roles/)
Security Reviewer (roles/)
Support User (roles/)
Service agent roles
-
DLP API Service Agent (
roles/)dlp.serviceAgent -
App Engine Standard Environment Service Agent (
roles/)appengine.serviceAgent
datastore.userCreds.create
Owner (roles/)
Editor (roles/)
Cloud Datastore Owner (roles/)
Cloud Datastore User Creds Admin (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Databases Admin (roles/)
datastore.userCreds.delete
Owner (roles/)
Editor (roles/)
Cloud Datastore Owner (roles/)
Cloud Datastore User Creds Admin (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Databases Admin (roles/)
datastore.userCreds.get
Owner (roles/)
Editor (roles/)
Viewer (roles/)
Cloud Datastore Owner (roles/)
Cloud Datastore User Creds Admin (roles/)
Cloud Datastore User Creds Viewer (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Databases Admin (roles/)
Support User (roles/)
datastore.userCreds.list
Owner (roles/)
Editor (roles/)
Viewer (roles/)
Cloud Datastore Owner (roles/)
Cloud Datastore User Creds Admin (roles/)
Cloud Datastore User Creds Viewer (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Databases Admin (roles/)
Security Admin (roles/)
Security Auditor (roles/)
Security Reviewer (roles/)
Support User (roles/)
datastore.userCreds.update
Owner (roles/)
Editor (roles/)
Cloud Datastore Owner (roles/)
Cloud Datastore User Creds Admin (roles/)
Firebase Admin (roles/)
Firebase Develop Admin (roles/)
Databases Admin (roles/)