Use Security in the planning sheet to control access to planning sheets and planning features by assigning users to one or more security roles.
In this article, you learn how to create and manage roles, set sheet-level and feature-level permissions for each role, and assign users to different roles.
To open the Security window, select Security from the toolbar.

It consists of two sections:

Security roles define the permissions available to a group of users. Create multiple roles to provide different levels of access based on user responsibilities. After creating a role, assign it to one or more users.
The Item Baseline role is created by default and applies to all users. You can configure common permissions in this role or create additional roles to provide different access levels for different groups of users.
To create a role:
Enter a role name, and then select Add.

After the role is created, assign it to users from the Users page.
To rename a role:
Renaming a role updates only its name. The configured permissions remain unchanged.
To delete a role:

The Item Baseline role is the default system role and cannot be renamed or deleted.
The General tab controls access to planning sheets for the selected role. All sheets available in the item are listed individually, allowing you to configure visibility and editing permissions for each sheet.

Select the role on the left. Then, for every sheet, set the following permissions:
| Permission | Description |
|---|---|
| Visible | Determines whether the sheet is visible to users assigned to the selected role. Disable this option to hide the sheet from users. |
| Read Only | Allows users to view the sheet but prevents them from making changes. Disable this option to allow users to edit the sheet. |
By default, you can view and edit all sheets for the selected role. You can configure individual sheets to hide them or make them read-only as required.
Enable the Visible toggle to make the sheet available to users. If you disable the Visible toggle, users can't access the sheet regardless of the Read Only setting.
The Planning tab lets you configure permissions for planning-specific features. You can apply permissions to All Sheets or Specific Sheets.
To configure permissions for specific sheets:
The Planning tab lets you configure permissions for the following features:

Configure permissions for accessing and modifying data input and forecast measures.
Available permissions:
| Permission | Description |
|---|---|
| Hidden | Hides the measures from users assigned to the selected role. |
| Read | Allows users to view measures but prevents them from making changes. |
| Read + Write | Allows users to view and modify measures. |
Configure whether users can access and work on Planning scenarios.
| Permission | Description |
|---|---|
| View | Allows users to view and work with scenarios. Clear this option to prevent users from accessing scenarios. |
Configure whether users can perform writeback operations.
| Permission | Description |
|---|---|
| Writeback | Allows users to write planning changes back to the data source. Clear this option to prevent writeback operations. |
Configure permissions for comments.
Available permissions:
| Permission | Description |
|---|---|
| View | Allows users to view comments. |
| Add | Allows users to add comments. |
| Lock/Unlock | Allows users to lock or unlock comments. |
| Star | Allows users to mark comments as starred. |
You can enable or disable each permission independently.
After configuring one or more roles, assign them to users to control their access to planning sheets and features.
To assign roles to users:
A user can be assigned to multiple roles.

When a user is assigned multiple roles, permissions from all assigned roles are considered. If different roles define different permission levels for the same feature, the highest level of access is granted.
Consider the configured permissions for the Member and Lead roles in the planning security settings.
| Feature | Member | Lead |
|---|---|---|
| Measures | Read + Write | Read |
| Scenario | View | View |
| Writeback | No | Yes |
| Comments | View, Add | View, Add, Lock/Unlock, Star Comments |
Suppose a user is assigned both the Member and Lead security roles.
The effective permissions for the user are as follows:
| Feature | Effective permission |
|---|---|
| Measures | Read + Write |
| Scenario | View |
| Writeback | Yes |
| Comments | View, Add, Lock/Unlock, Star Comments |
The user receives Read + Write access to Measures from the Member role and Writeback and advanced Comments permissions from the Lead role. Because permissions from all assigned roles are considered, the user receives the highest level of access available for each feature.
After configuring users and roles, select Back to Sheet to return to the Planning sheet.