Fine-grained permissions for Access policies and Access service tokens are available. These new resource-scoped roles expand the existing RBAC model, enabling administrators to grant permissions scoped to individual resources.
New roles
- Cloudflare Access policy admin: Can edit a specific Access policy in an account.
- Cloudflare Access service token admin: Can edit a specific Access service token in an account.
These roles complement the existing resource-scoped roles for Access applications, identity providers, and infrastructure targets.
For more information:
Source: Cloudflare


![Updates available for Microsoft 365 Apps for Current Channel [MC1297137] 3 pexels ken tomita 127057 389818](https://mwpro.co.uk/wp-content/uploads/2025/06/pexels-ken-tomita-127057-389818-150x150.webp)
![Dynamics 365 Customer Insights - Data - Reduce alert fatigue with noise-free notifications [MC1297005] 4 pexels googledeepmind 18069496](https://mwpro.co.uk/wp-content/uploads/2025/06/pexels-googledeepmind-18069496-150x150.webp)
![Power Platform – Please hard refresh your active long-running browser tab(s) [MC1296939] 5 pexels edward jenner 4252518](https://mwpro.co.uk/wp-content/uploads/2025/06/pexels-edward-jenner-4252518-150x150.webp)
