> For clean Markdown of any page, append .md to the page URL. > For a complete documentation index, see https://docs.moveworks.com/agent-studio/access-control/llms.txt. > For AI client integration (Claude Code, Cursor, etc.), connect to the MCP server at https://docs.moveworks.com/_mcp/server. # Access Control > **Controlled availability** > > Access Control is currently in Controlled Availability and may not be available in every workspace. Agent Studio has two layers of access control:
| Layer | Question it answers | Who it governs | Where to configure |
|---|---|---|---|
| **Developer access** (this section) | Who on my team can see, edit, and run the assets I build? | Developers and admins working inside Agent Studio | Roles, folders, and item-level permissions |
| **End-user access** | Who in my company can use the plugin once it ships? | Employees chatting with the assistant | [Launch rules and access strategies](/agent-studio/access-control/end-user-access-control) |
| Term | Definition |
|---|---|
| **Asset** | Any buildable component in Agent Studio: a plugin, action, connector, conversation process, or data type. |
| **Folder** | A container that holds assets and defines their default access. Public, Personal, or Custom. |
| **View** | A filtered lens over assets you already have access to (for example, `Shared with me` ). A view does not grant access on its own. |
| **Editing axis** | Authorship permissions that cascade: `View` \< `Edit` \< `Manage` . |
| **Runtime axis** | A single permission, **Use** , that controls running, testing, and referencing an asset. |
| **Role** | A named bundle of permissions across both axes: Manager, Developer, Operator, or Viewer. |