---
search:
  tags:
    - Access
    - POST
seo:
  description: >-
    Full-policy replacement for one principal. mode selected keeps the legacy…
    Reference for the POST /v1/access-policies endpoint in the openlaunch API.
sidebar:
  label: Set one principal's access policy
  badge: POST
title: Set one principal's access policy
type: openapi-operation
---
Full-policy replacement for one principal. mode selected keeps the legacy per-device grant list; mode all covers every device with opt-out excludedDevices and excludedFunctions. Only the workspace owner can grant role administrator or set delegatedFrom ancestry; delegated administrators may update operator policies for other principals and can never modify their own policy.

`POST /v1/access-policies`
