Skip to main content
Infisical’s Attribute-based Access Controls (ABAC) enable dynamic, attribute-driven permissions for both users and machine identities. ABAC enforces fine-grained, context-aware access controls using metadata attributes—stored as key-value pairs—either attached to identities or provided during authentication.

Users

Manage user metadata manually or automatically via SAML logins.

Machine Identities

Set metadata manually like users and access additional attributes provided during machine authentication (for example, OIDC claims).