NEW: Manage forms without full admin rights in Sitecore XM Cloud

Hero image

Sitecore just shared an improvement for XM Cloud that you should know: the introduction of the Advanced user role for Sitecore Form management.

Source: Sitecore changelog

Why does this matter?

Until now, the only way to allow someone to create or modify forms in XM Cloud was to assign them the Admin role. This is a permission level that grants full control across the entire platform. While effective, this approach posed risks: handing over broad admin rights just to manage forms meant potential exposure to unintended changes in critical parts of the platform.

What’s changed?

With the latest release, Sitecore has introduced the Advanced User role, specifically designed to enable form management without full admin privileges. This role strikes the balance between access and security:

  • Manage forms safely: Create, edit and delete forms without full admin access
  • Reduce risk: Limit exposure by avoiding unnecessary admin rights for everyday form editors

Sitecore Cloud Portal | User management

How to get started?

Head over to the XM Cloud Cloud Portal and assign the Advanced User role to those who need to manage forms. Pair it with custom privileges if your team requires additional access beyond forms management.

Note: This access level will only become available when you've set Organisation access to User. You can then specifically set the access level on XM Cloud to Advanced User.

My 2 cents

This is a step forward in improving the granularity of access control within XM Cloud. That said, there is still room for Sitecore to enhance role-based permissions and deliver fine-grained control. Granular access management is overdue, and I hope this marks the beginning of a continued focus on strengthening security and governance capabilities across the Cloud platform.

Until next time!