Permissions Catalog
The Permissions Catalog holds every permission the system knows, including the ones you add yourself. A permission is granted at one of three access levels — None, Read or Full Control — to a group or, as an override, to one user.

| Column | Description |
|---|---|
| Code | The permission's code. Lower-case letters, digits, ., - and _, up to 50 characters. |
| Resource | What the permission protects. |
| Action | What it allows. |
| Description | What it is for. |
| Module | The module it belongs to. |
| Category | The category it is filed under. |
| System | Check mark on a permission that ships with Beas. |
| Allows Full Control | Check mark when the permission can be granted at Full Control as well as Read. |
New Permission adds one of your own. Deleting a custom permission removes its group and user assignments with it, and the confirmation says so.
Not every permission supports Full Control. Where it does not, the screen says so — and setting Full Control in bulk skips those, reporting how many were left unchanged and which.
Examples
A permission that cannot be given Full Control. Some permissions only ever grant reading. The level list says This permission does not support Full Control rather than silently accepting it, which is why a bulk grant can report that it skipped some.