Overview of QuickSight folders - Amazon QuickSight

Overview of QuickSight folders

In Amazon QuickSight, you can create personal and shared folders. You can also favorite your personal or shared folders for quick access by choosing the favorite ( ) icon next to it.

You can do the following with personal folders:

  • Create subfolders.

  • Add assets to your folder, including analyses, dashboards, datasets, and data sources. To add assets to a personal folder, you must already have access to the assets. Multiple assets can have the same name.

Shared folders (unrestricted)

QuickSight administrators can perform the following tasks with shared folders.

  • Create or delete a shared folder and subfolders inside of it. You can move either of these around within the top-level folder.

  • Add or remove owners, contributors, and viewers. When you make a person an owner of the folder, you give them ownership of every asset in the folder. For more information, see Permissions for shared folders.

The following table summarizes the actions that a QuickSight user can take when working with unrestricted shared folders based on their role.

Action Owner Contributor Viewer
Share an asset in a folder with users that don't have access to the folder. Yes No No
Modify folder permissions. Yes No No
Create assets in the folder. Yes Yes No
Modify assets in the folder. Yes Yes No
Delete assets in the folder. Yes Yes No
Add an existing asset to a folder. Yes Yes No
Remove an asset from a shared folder. Yes No No
View assets in the folder. Yes Yes Yes
Create downstream assets outside of the shared folder that use assets that are located in the shared folder. Yes Yes Yes*
Create downstream assets in the folder that use assets that are located outside of the folder. Yes Yes No

*The user must be assigned an admin or author role to create assets.

Restricted shared folders

Restricted shared folders provide an additional security boundary that restricts the sharing of data outside of the folder. Administrators with the appropriate IAM permissions can perform the following tasks with restricted shared folders.

  • Restricted folders can be created using the CreateFolder API operation. For more information about the CreatFolder API operation, see CreateFolder.

  • The contributor role is assigned to users that can create and edit assets within the restricted folders. Contributors can't manage the permissions of the folder or of the assets that are in the restricted folder.

  • Administrators can assign folder contributor and viewer permissions to users with the UpdateFolderPermissions API operation. For more information about the UpdateFolderPermissions API operation, see UpdateFolderPermissions.

The following table summarizes the actions that a QuickSight user can take when working with restricted shared folders based on their role.

Action Contributor Viewer
Share an asset in a folder with users that don't have access to the folder. No No
Modify folder permissions. No No
Create assets in the folder. Yes No
Modify assets in the folder. Yes No
Delete assets in the folder. Yes No
Add an existing asset to a folder. No No
Remove an asset from a shared folder. No No
View assets in the folder. Yes Yes
Create downstream assets outside of the shared folder that use assets that are located in the shared folder. No No
Create downstream assets in the folder that use assets that are located outside of the folder. No No

The owner role is not supported for restricted shared folders.