---
title: "How do I grant secure access to my LUSID domain for support?"
slug: "how-do-i-grant-secure-access-to-my-lusid-domain-for-support"
updated: 2026-06-03T13:24:16Z
published: 2026-06-03T13:24:16Z
canonical: "support.lusid.com/how-do-i-grant-secure-access-to-my-lusid-domain-for-support"
stale: true
---

> ## Documentation Index
> Fetch the complete documentation index at: https://support.lusid.com/llms.txt
> Use this file to discover all available pages before exploring further.

# How do I grant secure access to my LUSID domain for support?

When you [contact FINBOURNE technical support](/v1/docs/how-do-i-use-the-support-centre), we may ask you to temporarily grant access to your account and data in order that we might resolve any issues efficiently.

FINBOURNE employees are unable to access your account and data without first obtaining your explicit consent. [Learn more about our security practices](https://www.finbourne.com/security/practices).

You can specify:

- A role for the FINBOURNE employee that determines what data they can see and which operations they can perform.
- A time period between 1 and 14 days. You can [revoke access](/v1/docs/how-do-i-grant-secure-access-to-my-lusid-domain-for-support#revoking-access-early) at any time.

## Granting access

To grant access:

1. [Sign in to the LUSID web app](https://www.lusid.com/app/home).
2. Navigate to the **Help > Data Access** dashboard and click the **Grant Access** button: ![](https://cdn.document360.io/d575ad81-c0ed-4980-bbd1-d59ac5c3de82/Images/Documentation/c5f15577-3682-4599-b756-03feda77acac.png)
3. Select a role for the FINBOURNE employee, a number of days, and a description as a reminder to yourself (or your team) why access has been granted: ![](https://cdn.document360.io/d575ad81-c0ed-4980-bbd1-d59ac5c3de82/Images/Documentation/image-KREO0B09.png)

| **Role** | **Code** | **Explanation** |
| --- | --- | --- |
| IAM Read-Only | `support-iam-readonly` | Grants read-only access to IAM features and data only. |
| IAM Administrator | `support-iam-administrator` | Grants top-level administrator access to IAM features and data only. |
| LUSID Read-Only | `support-lusid-readonly` | Grants read-only access to the LUSID platform. |
| LUSID Document Sharer | `support-lusid-document-sharer` | Grants: - Write access to a special root `LUSID-support-document-sharer` folder in [Drive](/v1/docs/drive). - Read-only access to all the other files and folders stored in Drive. |
| LUSID Administrator | `lusid-administrator` | Grants top-level administrator access to the [entire FINBOURNE platform](/v1/docs/understanding-all-the-applications-in-the-finbourne-platform). |
| AdminUI Read-Only | `support-adminui-readonly` | Grants the stated level of access to the [Admin Portal](/v1/docs/admin-portal), including emergency operations for the administrator. |
| AdminUI Read & Write | `support-adminui-readwrite` |
| AdminUI Administrator | `support-adminui-administrator` |

## Revoking access early

By default, access automatically expires after the set number of days. You can revoke access to all active grants early by clicking the **Revoke access** button that appears when you have at least one active grant:

![](https://cdn.document360.io/d575ad81-c0ed-4980-bbd1-d59ac5c3de82/Images/Documentation/148cb632-074b-4279-a715-010423bd486a.png)
