When you grant access to the Egnyte app instance, Netskope seeks consent for the following permissions from the Egnyte account:
| Permissions Required by Netskope | Description | Purpose | Trade-off if not allowed |
|---|---|---|---|
| Create and manage links | Allows the application to have control to create and remove links. | Allows Netskope to read links to determine file/folder exposure, and remove links upon remediation. | Cannot determine the exposure correctly, and will not be able to remove links for remediation. |
| Read and write all files and folders | Allows the application to read/write files and folders. | Allows Netskope to read/write file folder data in the configured Egnyte instance. | Cannot provide visibility into file/folder data. |
| Manage Egnyte Webhooks | Allows the application to subscribe to webhooks HTTP-based callback function to receive updates. | Allows Netskope to receive webhooks HTTP-based callback function in the configured Egnyte instance to receive audit information. | Cannot receive any update information for new files/folders. |
| Create and manage project folders | Allows the application to have control to create/remove project folders. | Allows Netskope to read/write project folder data in the configured Egnyte instance. | Cannot provide visibility into project folders. |
| View and manage users | Allows the application to view and manage users. | Allows Netskope to read user data in the configured Egnyte Instance. | Cannot obtain user information and affects subsequent inventory and exposure computations. |
| View and manage folder permissions | Allows the application to view and manage folder permissions. | Allows Netskope to read and update folder permissions in the configured Egnyte Instance. | Cannot obtain folder permissions and affects subsequent inventory and exposure computations. |
| Generate audit reports | Allows the application to generate audit reports. | Allows Netskope to obtain audit information for user/group update info. | Cannot obtain user/group update information for audit purposes. |
| View and manage groups | Allows the application to view and manage groups. | Allows Netskope to read group data in the configured Egnyte Instance | Cannot obtain group information and affects subsequent inventory and exposure computations. |

