This topic describes the system policies supported by the Low-Code Development Platform and their permissions. You can use this information as a reference when you grant permissions to RAM identities.
What is a system policy
An access policy is a collection of permissions described by a specific syntax. Policies define the authorized resource set, operation set, and conditions for authorization. Alibaba Cloud Resource Access Management (RAM) provides two types of access policies: system policies and custom policies. Alibaba Cloud creates and maintains system policies. You can use these policies but you cannot modify them. You can manage custom policies and their versions, which includes creating, updating, and deleting the policies. Updates to a system policy affect all RAM identities that are granted the policy. These identities include RAM users, RAM user groups, and RAM roles. For more information about RAM access policies, see Overview of access policies.
Product system policies
AliyunMOBILCDPDEVFullAccess
You can grant the AliyunMOBILCDPDEVFullAccess policy to a RAM identity. This policy grants full management permissions for the Low-Code Development Platform (MOBILCDPDEV).
AliyunMOBILCDPDEVReadOnlyAccess
You can grant the AliyunMOBILCDPDEVReadOnlyAccess policy to a RAM identity. This policy grants read-only access to the Low-Code Development Platform (MOBILCDPDEV).
Granting permissions
By default, RAM identities have no permissions. An administrator of an Alibaba Cloud account must grant permissions to RAM identities before they can access the account's resources. To ensure the data security of your resources, follow the Principle of Least Privilege (PoLP). Grant only the necessary permissions to identities that need to access your cloud resources. For detailed instructions on how to grant permissions, see: