Module Description
This module provides security features for platforms with a clear user role hierarchy. By enabling this module, lower user roles will no longer be able to create, edit or delete users with more powerful roles.
When you enable this module, the role management screen becomes the criteria for acccount edit permissions depending on the role ordering like this:
1. Accounts with higher roles can create/edit accounts with roles lower or equal in the list 2. Accounts with lower ranking roles cannot edit/create accounts higher role in the rank.
To configure the role hierarchy, simply go to /admin/people/roles and order the roles, having the more powerful roles first.
Similar modules:
- https://www.drupal.org/project/role_weights - https://www.drupal.org/project/roleweight - https://www.drupal.org/project/role_delegation
When you enable this module, the role management screen becomes the criteria for acccount edit permissions depending on the role ordering like this:
1. Accounts with higher roles can create/edit accounts with roles lower or equal in the list 2. Accounts with lower ranking roles cannot edit/create accounts higher role in the rank.
To configure the role hierarchy, simply go to /admin/people/roles and order the roles, having the more powerful roles first.
Similar modules:
- https://www.drupal.org/project/role_weights - https://www.drupal.org/project/roleweight - https://www.drupal.org/project/role_delegation
Module Link
Project Usage
134
Security Covered
Not Covered By Security Advisory
Version Available
Production
Module Summary
This module aims to solve the issue of lower user roles being able to create, edit, or delete users with more powerful roles by enforcing a clear user role hierarchy.
Data Name
role_hierarchy