Hey everyone! For Snowflake metadata ingestion job...
# ingestion
c
Hey everyone! For Snowflake metadata ingestion jobs, if I were to create a Snowflake user to access data through, what would be the bare minimum access privileges that I would need to grant the user (without any need for query stats or table lineage)?
p
We recently did the same and wanted to use a less privileged user. Unfortunately, the docs are not giving any hints here. We inspected the QUERY_HISTORY for the technical user account we employed in order to understand what is needed. As far as I remember, this user/role only needs • a default warehouse • USE grants on all databases and schemas to be included • SELECT grants on all tables and views to be included • IMPORTED PRIVILEGES granted on the SNOWFLAKE database
e
Hey Shivan and Philipp! From the docs, it looks like ACCOUNTADMIN is needed to extract metadata for databases, schemas, views and tables
h
Hi @cool-painting-92220, you could actually create a custom
datahub_role
using the privileges described in the prerequisites section of the documentation.