diff --git a/coderd/rbac/scopes_catalog.go b/coderd/rbac/scopes_catalog.go index ef4f3186de4fd..7f6b538bd5bfd 100644 --- a/coderd/rbac/scopes_catalog.go +++ b/coderd/rbac/scopes_catalog.go @@ -43,6 +43,7 @@ var externalLowLevel = map[ScopeName]struct{}{ // Users (personal profile only) "user:read_personal": {}, "user:update_personal": {}, + "user.*": {}, // User secrets "user_secret:read": {}, @@ -57,6 +58,12 @@ var externalLowLevel = map[ScopeName]struct{}{ "task:update": {}, "task:delete": {}, "task:*": {}, + + // Organizations + "organization:read": {}, + "organization:update": {}, + "organization:delete": {}, + "organization:*": {}, } // Public composite coder:* scopes exposed to users. diff --git a/codersdk/apikey_scopes_gen.go b/codersdk/apikey_scopes_gen.go index df7fe96c4585e..f4bc90152dd42 100644 --- a/codersdk/apikey_scopes_gen.go +++ b/codersdk/apikey_scopes_gen.go @@ -221,6 +221,10 @@ var PublicAPIKeyScopes = []APIKeyScope{ APIKeyScopeFileAll, APIKeyScopeFileCreate, APIKeyScopeFileRead, + APIKeyScopeOrganizationAll, + APIKeyScopeOrganizationDelete, + APIKeyScopeOrganizationRead, + APIKeyScopeOrganizationUpdate, APIKeyScopeTaskAll, APIKeyScopeTaskCreate, APIKeyScopeTaskDelete,