Knowledge RBAC for enterprise agents: same gates for chat, browse, and citations
· 5 min read
An agent that answers from documents is only as trustworthy as the document permissions behind it.
Teams often lock the chat endpoint carefully, then leave library browse and citation PDF downloads open to anyone who can sign in. That is not a knowledge boundary. That is a second door with a nicer UI.

*Figure 1. Product capabilities belong as app roles on the API. Source: Microsoft Learn: add app roles.
