Custom user roles having too restricted permissions on some workspaces

Incident Report for SAP LeanIX

Postmortem

Incident Description

At 2025-06-03 09:45 UTC, SAP LeanIX users started experiencing issues accessing parts of the application with custom customer roles.

Dashboard related error messages were displayed in the Inventory, and users appeared to have fewer permissions than anticipated.

Incident Resolution

We conducted an investigation into the issue and traced it back to a recent release that targeted broken or invalid customer roles. The change that caused the problem was rolled back on 2025-06-03 15:11 UTC, successfully restoring the expected behaviour.

Root Cause Analysis

The team launched an update on 2025-06-03 09:45 UTC aimed at addressing ongoing issues with broken and invalid customer roles. This modification impacted users who employ custom customer roles in general, resulting in them being assigned fewer permissions than intended.

The lack of necessary permissions caused several components of the application to malfunction, leading to unclear error messages being displayed to users in the Inventory.

The change has been completely reverted and will be reassessed by our engineering teams.

Preventative Measures

We are taking steps to improve how we test changes before they reach our live environment. This includes upgrading our developer tools so we can better simulate real-life scenarios and catch issues earlier. We’re also continuously looking into ways to release updates to a small group of users first, making it easier to identify and fix potential problems. These improvements will help us prevent similar outages in the future and ensure a smoother experience for our customers.

Posted Jun 04, 2025 - 12:46 UTC

Resolved

This incident has been resolved. We appreciate your patience and understanding.
Posted Jun 03, 2025 - 15:11 UTC

Update

We are continuing to monitor for any further issues.
Posted Jun 03, 2025 - 15:10 UTC

Monitoring

We experienced a service degradation where users with custom user roles were seeing less data than they should in the inventory due to too strict permissions. Our team fixed the root cause and is currently monitoring the service.
Posted Jun 03, 2025 - 09:45 UTC
This incident affected: AE Instances, AU Instances, BR Instances, CA Instances, CH Instances, DE instances, EU Instances, JP Instances, SG Instances, UK Instances, and US Instances.