Access to scripts is managed at the object level, ensuring that custom automation code and sensitive logic are restricted to authorized users. For a complete description of how object-level access affects script visibility and execution across Cortex XSIAM, see [Manage access to playbooks and scripts](../../../onboard-cortex-xsiam/post-deployment/manage-user-roles-and-access-management/manage-access-to-objects/manage-access-to-playbooks-and-scripts).
**Script access roles**
When a script is shared, users are assigned one of the following levels:
* **Owner**: Full control over the script and its permissions.
* **Editor**: Can view and modify the script code and settings.
* **Viewer**: Can view the code and use the script in playbooks or the CLI but cannot make changes.