Skip to main content
Drupal is a registered trademark of Dries Buytaert
Release: Configuration Language Lock 1.0.2 Minor update available for module config_language_lock (1.0.2). Release: Canvas Override 1.0.1 Minor update available for module canvas_override (1.0.1). Release: Media Remote Image 8.x-1.2 Minor update available for module media_entity_remote_image (8.x-1.2). Release: IDNA Convert Service (punycode) 2.0.4 Minor update available for module idna (2.0.4). Release: Bootstrap Cloud 7.1.3 Minor update available for theme bootstrap_cloud (7.1.3). Release: Token Browser 1.0.2 Minor update available for module token_browser (1.0.2). Release: Varbase Project 11.0.8 Minor update available for module varbase_project (11.0.8). Release: Media Remote Image 2.0.0-beta1 First beta version released for module media_entity_remote_image (2.0.0-beta1). Usage Milestone: Term CSV Export Import Module term_csv_export_import crossed 1,000 active installs. Security Coverage: Module Scout Module module_scout now has official Drupal security advisory coverage.

Role Audit

90 sites Security covered Drupal 11 · not 10
View on drupal.org

Role Audit helps you visualize and compare permissions and route access between different Drupal roles. It highlights which access rights are unique to each role or shared, aiding in security analysis and conflict resolution.

Role Audit provides a visual comparison of permissions and route access between different Drupal roles. Easily identify overlapping or unique access rights using a logic-driven interface similar to a Venn diagram.

Features

Managing complex access control in Drupal can be opaque. Role Audit simplifies site governance by allowing to compare two or more roles side-by-side to understand exactly where access levels diverge.

  • Permission Comparison: Quickly see which permissions are unique to Role A, unique to Role B, or shared by both.
  • Routing Audit: Analyze static routing definitions to see which roles have access to specific system paths.
  • Security Gap Analysis: Identify risks where a "lower" role might accidentally have more power than a "higher" role.
  • Conflict Resolution: Perfect for debugging why a specific user can or cannot perform an action based on their assigned roles.

Post-Installation

Once installed, navigate to People > Role Audit (/admin/people/role-audit), where you will find two primary tools:

  1. Permissions Audit: Select your roles to generate a filtered table highlighting the differences and commonalities in their permission sets.
  2. Route Audit: Compare how different roles access system routes based on static definitions.

Disclaimer: The Route Audit examines static routing definitions (e.g., _permission and _role). It does not account for dynamic access checks or custom AccessCheck services. For a 100% accurate vision of access, always test specific routes with specific parameters for each user role.

Additional Requirements

  • This module relies solely on Drupal Core (User and Routing modules) and has no external dependencies.

Depends on

Dependencies of the latest stable release

No dependencies recorded for this project.

Required by

Tracked projects that depend on this one

No tracked projects depend on this one yet.

Activity

Tracked releases
3
Tracked since
Mar 2026
Latest release
2 months ago
Releases (12 mo)
3 ▲ from 0
Maintenance
Active

Release Timeline

Releases

Version Type Core Release date
1.x-dev Dev 11 Jul 7, 2026
1.0.1 Stable 11 Apr 9, 2026
1.0.x-dev Dev 11 Mar 9, 2026