# Flow lock/unlock and show/hide permission

**URL:** <https://discourse.nodered.org/t/flow-lock-unlock-and-show-hide-permission/82219>\
**Category:** Feature Requests\
**Created:** [20 October 2023 10:51 UTC](https://discourse.nodered.org/t/flow-lock-unlock-and-show-hide-permission/82219 "2023-10-20T10:51:40Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![BaptMB](https://sea2.discourse-cdn.com/flex026/user_avatar/discourse.nodered.org/baptmb/32/83937_2.png) [@BaptMB](https://discourse.nodered.org/u/BaptMB)\
**Post date:** [20 October 2023 10:51 UTC](https://discourse.nodered.org/t/flow-lock-unlock-and-show-hide-permission/82219/1 "2023-10-20T10:51:40Z")

</div>

Hello,

Following version 3.1 that can lock and unlock flow. It would be great if we can have a specific permission/authorization for that property as well as flow visibility.

This allow, at low cost, to have 2 levels of editors : 1 that has lock and visibility permission and can then edit strategic flows, another that do not have this permission that can only edit non-strategic flows (and possibly cannot even see strategic flows).

I can contribute to that feature and make a PR for this.

---

<div class="post-metadata">

**Author:** ![knolleary](https://sea2.discourse-cdn.com/flex026/user_avatar/discourse.nodered.org/knolleary/32/3_2.png) [@knolleary](https://discourse.nodered.org/u/knolleary)\
**Post date:** [20 October 2023 13:09 UTC](https://discourse.nodered.org/t/flow-lock-unlock-and-show-hide-permission/82219/2 "2023-10-20T13:09:56Z")

</div>

Hi @BaptMB

That was the general plan for the feature, we just haven't got there yet.

One of the main missing pieces is that we don't have a properly established way to define fine-grained permissions for users; it's currently read/write level.

If you wanted to raise an item in [node-red/designs Feature Requests · Discussions · GitHub](https://github.com/node-red/designs/discussions/categories/feature-requests) we can discuss the technical approach to achieve this.

Restricting visibility of flows is a separate item - and more complicated to achieve due to the implications it has on all the runtime APIs.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/flex026/uploads/nodered/original/1X/d073cd938eafa2e558d7c2cd59003b3ef4963033.png) [@system](https://discourse.nodered.org/u/system)\
**Post date:** [19 December 2023 13:10 UTC](https://discourse.nodered.org/t/flow-lock-unlock-and-show-hide-permission/82219/3 "2023-12-19T13:10:20Z")

</div>

This topic was automatically closed 60 days after the last reply. New replies are no longer allowed.
