Reviewing app access
App Blueprint → Access is the visual map of who can reach what in your app blueprint. Open it after you add or change roles, pages, actions, or table access, and before you invite real users. Use it whenever Preview as a role fails in a surprising way. Access is read-only: it does not change permissions by itself. You fix permissions on Roles, Pages, Tools, and model access, then refresh Access.How to verify
Work it like a short security review:- Inventory roles under Roles.
- In Access, pick a role: nav, pages, tools, and tables they can reach.
- Check findings for common mistakes (actions hidden only by UI conditions, page actions that expose a restricted tool, table sources without model access).
- Use By Role, Matrix, and Graph tabs when the app is large.
- Preview as the same role and try a path that should fail.
- Fix permissions, then refresh Access and Preview again.
Limits and notes
- Hiding a nav item is not the same as revoking page or tool access.
- Builder (owner/admin) success is not proof a customer role can (or cannot) do the same.
- Pair with Preview as a role and the Launch checklist.

