---
title: "Updates permissions for a dashboard."
method: POST
path: "/dashboards/uid/{uid}/permissions"
tags: ["dashboards", "permissions"]
deprecated: true
---

# Updates permissions for a dashboard.

`POST /dashboards/uid/{uid}/permissions`

> **Deprecated.**

This operation will remove existing permissions if they’re not included in the request.

## Path parameters

- `uid` string, required

## Request body

- UpdateDashboardACLCommand
  - `items` DashboardACLUpdateItem[]
    - `permission` integer
    - `role` 'None' | 'Viewer' | 'Editor' | 'Admin'
    - `teamId` integer
    - `userId` integer

## Response `200`

An OKResponse is returned if the request was successful.

- SuccessResponseBody
  - `message` string

## Other responses

- `400` — BadRequestError is returned when the request is invalid and it cannot be processed.
- `401` — UnauthorizedError is returned when the request is not authenticated.
- `403` — ForbiddenError is returned if the user/token has insufficient permissions to access the requested resource.
- `404` — NotFoundError is returned when the requested resource was not found.
- `500` — InternalServerError is a general error indicating something went wrong internally.

---

[API](https://skmtc.net/grafana/apis/http-api.md) · [All operations](https://skmtc.net/grafana/apis/http-api/llms.txt) · [OpenAPI document](https://skmtc-service-staging.skmtc.workers.dev/v1/apis/grafana/http-api/revisions/df55ba1718ba/schema)
