cancel
Showing results for 
Search instead for 
Did you mean: 
Reply
sajarac
Kudo Kingpin
Kudo Kingpin

Sharing my APP

Hi there,

 

Silly question here.

 

I have my app ready for distribution, under the powerapps setting I can easy assing to share with my entire organization, but once the users start using the app they get a notification "powerapps you don't have permission to view this data"

 

BTW my data is a Share point List.

 

I would like to add in my powerapp a specific group in my organization. and also in my share point list the same group.

 

Someone could point me in the right direction?

 

thanks in advance

 

 

6 REPLIES 6
TimRohr
Solution Sage
Solution Sage

Does the user have rights on the SharePoint side? The list will inherit rights unless you break the inheritance (and if you want to add specific rights to the list I think you *have* to break inheritance). Once you have the user (or group) added to have rights to the list in SharePoint, and since you've already shared the powerapps app to the user, you should be in business.

 

In SharePoint Online, go to the Settings for the List (click the 3 dots and choose Settings, or open the List and choose "List Settings" from the gear at the top of the screen). Then pick "Permissions for this list". That will get you to the screen where you can add or remove rights.

Thank you very much for your prompt response. I don't have to much experience in SPL, but I can see the permissions for the list. But I will do my best to finish this.

 

Sorry to bother you, I just noticed when I was trying to fix this. I have another list in SP but that list is in a public group. I used another account to access the share sites in share point and I saw that list. so I was curious to see if I can see the data and modify something and in fact I did I was able to add a column in a list. so this mean every user can do that and the worst delete a column....OMG.

 

Do you know how can I fix this?

 

I mean change the atributes to read/write data but not full control

 

Thanks in advance

 

Regards,

 

You need to create a group for the consumption of the list versus the editing/control of the list. The group could be a domain group or a SharePoint group.

 

Note: If you're creating a SharePoint group, I'm a fan of either making the group the owner of itself, or creating a group to be the owner of the group... (where the owning/administering group would be the owner of itself). This gets past the problem of the Employee who owns the group leaving, and now you can't edit the group or access the list.

 

Add the necessary users to the "Use" group. Add the necessary users to the "Edit" group.

Then choose to "Stop Inheriting Permissions" and then add the appropriate permissions for the groups you created.

Hi,

 

I have been reading and reading, sorry I don't get it. in a baby steps in SP.

 

 

OK... I can try. Not a SharePoint maven like some on here, but I can get it done. Be aware that -- this being Microsoft -- there are a dozen ways to get to whatever destination you're after. They are all about accessibility. Someone else might have another way to go about this. This is what works for me.

 

These screenshots and steps are from SharePoint online.

 

Go to your site. Click on the gear icon in the upper right, and choose "Site Settings".

SiteSettings-Menu.PNG

You'll be taken to the Site Settings screen with many links. The links availalbe to you will depend on your authority on the site.

SiteSettingsScreen.PNG

Choose Site Permissions to navigate to the Site Permissions page. There you will see on the ribbon the ability to Create a group. Click on that.

CreateGroup-OnPermissionsPage.PNG

This is what you will use to create groups if necessary (like a "view" group versus an "editing/control"). This is also where you can set site-level permissions for various groups. This would be the first place to start in terms of who can access what. You can edit an existing group and grant or remove rights. (I'll keep going as if this level of control isn't enough, and for some reason you have to have more granular control over one list or another.)

If you have to create a group, it will have 1 owner. This can be a person or another group. You will default in as the Owner. Take it from personal experience, if you assign ownership away from yourself, you run the risk that you won't be able to edit that group. No fun. Extend that idea to where you imagine the Owner of a group leaving your company, and you see the inherent problems in a single-owner situation.

One solution is to make the Group the owner of itself (requires you to go back into the group after you have created it and replace the Owner value with the name of the Group), and give it rights to control membership. (You will see all of these options on the Create Group screen; if you need more explanation over any of these, you probably shouldn't be administering SharePoint yet. Just saying...)

Now make sure you are a member of the group. If someone leaves, you have other members of the Group who are still there. You can still control the membership.

This solution has problems because you don't always want members of a group to have control over who can be in the group. That's the whole reason for establishing Groups in the first place, to limit or grant rights. So let's extend the solution slightly.

I favor a model where, for any group of significant size or access (or significant limiting of access), we have an Administrative group to own/control/administer it. It could be the same admin group for all user groups, or it could be one admin group for each user group... ie, a ProductionListRead group could have a ProductionListAdmin group. We will figure that the users in the admin group are savvy, trusted, and empowered to view the data that they administer, so for the admin group, I *would* make the group the owner of itself.

So, getting back to the Permissions screen in SharePoint, create a group to be the Administrative group for your "Viewing" group. Give it rights to control membership, etc. As we are thinking about rights to manage specific lists, etc., we won't grant site-level permissions (at the bottom of the screen). Leave yourself as the Owner, and hit "Create". You will be taken to the "People and Groups" page for your new group. Click "New" and choose "Add Users to this Group." Step through the process. Pro-tip: in the pop-up window where you can add users, click on "SHOW OPTIONS" to deselect the "Send an email..." option.

Use the Gear in the upper right again, go to Site Settings, and then Permissions. Your Group will be listed there. Edit it, and now change the Owner to be the group, itself. Save the Group again.

Back at the Permissions page, Create another group, this one to be the "View" group for your list. Set the Owner to be the Admin group you previously created. Don't grant site-level permissions, and click "Create". Add the appropriate users.

Get back to the Permissions page and create another group, this one to be the "Edit/Design" group for your list. Same as for the "View" group, set the Owner to be the Admin group, don't grant site-level permissions, and click "Create". Add appropriate users.

Now you're ready to set permissions for your list.

Navigate to your Site Contents page, and find the list you're worried about. Let's pretend the name of the list is "Regions".

Three-Dot-Menu.PNG

See the 3-dot menu? Click that to get a pop-up.

ListSettings-PopUp.PNG

Choose "Settings". As an alternative, if you actually click on the List from here (so that you are viewing the List data/contents), you can use the same gear icon you used before (in the upper right of your site) to choose "List Settings".

List-Settings-Under-Gear.PNG

That will take you to the List Settings page for that List. Find "Permissions for this list" and click on it.

PermissionsLink.PNG

You will see groups that have inherited rights to the List. You will probably see, then Groups that should NOT have access (based on what you describe). First step you will want to do is to click the button to "Stop Inheriting Permissions" on the ribbon.

StopInheriting.PNG

Verify your choice (make sure you understand the implications first). You will be taken to pretty much the same screen, except the ribbon will update. You'll now have the option to "Delete unique permissions" and "Grant Permissions". Your exising Groups who previously had rights will be there, too. Their rights have been converted from Inherited to Unique (explicitly granted at this level/object). Selecting the checkbox next to any/all of them will enable more buttons on the ribbon ("Edit User Permissions" and "Remove User Permissions").

First, add rights to the new groups you have created by choosing "Grant Permissions" on the ribbon.

GrantPermissions.PNG

In the dialog box that pops up, enter the name of the view-group you created, and choose "SHOW OPTIONS". Again, since you are recreating rights, I would deselect the "Send Email" box. Select the appropriate level of permissions in the bottom dropdown (for this group, either View, Contribute, or Read, depending on your need). Click "Share".

Use the same process to "Grant Permissions" to your Edit group, selecting one of the higher level of permissions (Full Control, Design, or Edit).

Last, get back to the Permissions of the List (where you see the Groups & Users who have access), and remove the access from the entities that should not have access (all of the rights you were appalled to find your users had).

 

Hopefully this makes sense. I can't get much more step-by-step than this. Good luck!

Wow, thank you very much for this very useful and complete guide. I really really appreciate your cooperation. I will start tryin this and I will update with the resutls.

 

Thanks in advance!!!!

 

 

Helpful resources

Announcements

Community will be READ ONLY July 16th, 5p PDT -July 22nd

Dear Community Members,   We'd like to let you know of an upcoming change to the community platform: starting July 16th, the platform will transition to a READ ONLY mode until July 22nd.   During this period, members will not be able to Kudo, Comment, or Reply to any posts.   On July 22nd, please be on the lookout for a message sent to the email address registered on your community profile. This email is crucial as it will contain your unique code and link to register for the new platform encompassing all of the communities.   What to Expect in the New Community: A more unified experience where all products, including Power Apps, Power Automate, Copilot Studio, and Power Pages, will be accessible from one community.Community Blogs that you can syndicate and link to for automatic updates. We appreciate your understanding and cooperation during this transition. Stay tuned for the exciting new features and a seamless community experience ahead!

Check Out | 2024 Release Wave 2 Plans for Microsoft Dynamics 365 and Microsoft Power Platform

On July 16, 2024, we published the 2024 release wave 2 plans for Microsoft Dynamics 365 and Microsoft Power Platform. These plans are a compilation of the new capabilities planned to be released between October 2024 to March 2025. This release introduces a wealth of new features designed to enhance customer understanding and improve overall user experience, showcasing our dedication to driving digital transformation for our customers and partners.    The upcoming wave is centered around utilizing advanced AI and Microsoft Copilot technologies to enhance user productivity and streamline operations across diverse business applications. These enhancements include intelligent automation, AI-powered insights, and immersive user experiences that are designed to break down barriers between data, insights, and individuals. Watch a summary of the release highlights.    Discover the latest features that empower organizations to operate more efficiently and adaptively. From AI-driven sales insights and customer service enhancements to predictive analytics in supply chain management and autonomous financial processes, the new capabilities enable businesses to proactively address challenges and capitalize on opportunities.    

Summer of Solutions | Week 3 Results | Win free tickets to the Power Platform Conference

We are excited to announce the Summer of Solutions Challenge!   This challenge is kicking off on Monday, June 17th and will run for (4) weeks.  The challenge is open to all Power Platform (Power Apps, Power Automate, Copilot Studio & Power Pages) community members. We invite you to participate in a quest to provide solutions in the Forums to as many questions as you can. Answers can be provided in all the communities.    Entry Period: This Challenge will consist of four weekly Entry Periods as follows (each an “Entry Period”)   - 12:00 a.m. PT on June 17, 2024 – 11:59 p.m. PT on June 23, 2024 - 12:00 a.m. PT on June 24, 2024 – 11:59 p.m. PT on June 30, 2024 - 12:00 a.m. PT on July 1, 2024 – 11:59 p.m. PT on July 7, 2024 - 12:00 a.m. PT on July 8, 2024 – 11:59 p.m. PT on July 14, 2024   Entries will be eligible for the Entry Period in which they are received and will not carryover to subsequent weekly entry periods.  You must enter into each weekly Entry Period separately.   How to Enter: We invite you to participate in a quest to provide "Accepted Solutions" to as many questions as you can. Answers can be provided in all the communities. Users must provide a solution which can be an “Accepted Solution” in the Forums in all of the communities and there are no limits to the number of “Accepted Solutions” that a member can provide for entries in this challenge, but each entry must be substantially unique and different.    Winner Selection and Prizes: At the end of each week, we will list the top ten (10) Community users which will consist of: 5 Community Members & 5 Super Users and they will advance to the final drawing. We will post each week in the News & Announcements the top 10 Solution providers.  At the end of the challenge, we will add all of the top 10 weekly names and enter them into a random drawing.  Then we will randomly select ten (10) winners (5 Community Members & 5 Super Users) from among all eligible entrants received across all weekly Entry Periods to receive the prize listed below. If a winner declines, we will draw again at random for the next winner.  A user will only be able to win once overall. If they are drawn multiple times, another user will be drawn at random.  Individuals will be contacted before the announcement with the opportunity to claim or deny the prize.  Once all of the winners have been notified, we will post in the News & Announcements of each community with the list of winners.   Each winner will receive one (1) Pass to the Power Platform Conference in Las Vegas, Sep. 18-20, 2024 ($1800 value). NOTE: Prize is for conference attendance only and any other costs such as airfare, lodging, transportation, and food are the sole responsibility of the winner. Tickets are not transferable to any other party or to next year’s event.   ** PLEASE SEE THE ATTACHED RULES for this CHALLENGE**   Week 1 Results: Congratulations to the Week 1 qualifiers, you are being entered in the random drawing that will take place at the end of the challenge. Community MembersNumber of SolutionsSuper UsersNumber of Solutions @anandm08  23 @WarrenBelz  31 @DBO_DV  10 @Amik  19 AmínAA 6 @mmbr1606  12 @rzuber  4 @happyume  7 @Giraldoj  3@ANB 6 (tie)   @SpongYe  6 (tie)     Week 2 Results: Congratulations to the Week 2 qualifiers, you are being entered in the random drawing that will take place at the end of the challenge. Community MembersSolutionsSuper UsersSolutions @anandm08  10@WarrenBelz 25 @DBO_DV  6@mmbr1606 14 @AmínAA 4 @Amik  12 @royg  3 @ANB  10 @AllanDeCastro  2 @SunilPashikanti  5 @Michaelfp  2 @FLMike  5 @eduardo_izzo  2   Meekou 2   @rzuber  2   @Velegandla  2     @PowerPlatform-P  2   @Micaiah  2     Week 3 Results: Congratulations to the Week 3 qualifiers, you are being entered in the random drawing that will take place at the end of the challenge.   Week 3:Community MembersSolutionsSuper UsersSolutionsPower Apps anandm0861WarrenBelz86DBO_DV25Amik66Michaelfp13mmbr160647Giraldoj13FLMike31AmínAA13SpongYe27  

Updates to Transitions in the Power Platform Communities

We're embarking on a journey to enhance your experience by transitioning to a new community platform. Our team has been diligently working to create a fresh community site, leveraging the very Dynamics 365 and Power Platform tools our community advocates for.  We started this journey with transitioning Copilot Studio forums and blogs in June. The move marks the beginning of a new chapter, and we're eager for you to be a part of it. The rest of the Power Platform product sites will be moving over this summer.   Stay tuned for more updates as we get closer to the launch. We can't wait to welcome you to our new community space, designed with you in mind. Let's connect, learn, and grow together.   Here's to new beginnings and endless possibilities!   If you have any questions, observations or concerns throughout this process please go to https://aka.ms/PPCommSupport.   To stay up to date on the latest details of this migration and other important Community updates subscribe to our News and Announcements forums: Copilot Studio, Power Apps, Power Automate, Power Pages

Top Solution Authors
Top Kudoed Authors
Users online (4,616)