no written docs sadly, but I was able to get some good info from support on this. the "write" bit for a user/role on the search app just lets them then modify attribute for their search. so lets them share their searches for example.
the user then can control on a given search who they want to read/write THAT search. read on the search lets folks run it. write let's them modify it.
So an example. say you have Bob,Mary in Role1, Joe,Gary in Role2. giving Role1,Role2 write access to "search app" just let's them share their objects. it does not give them global "write" access to ALL of search. which is I think the concern wegordoniii and wrangler2x had (as did we).
Then if Bob shares search SearchA with read to Role1,Role2. then all four users can run it. but only Bob can maintain/modify the search itself.
If Joe makes a SearchB and marks id read for Role1 and read&write for Role2 then:
- Bob and Mary will be able to just run the search
- Joe,Gary will be able to both make changes to the search.
... View more