User group rights

The following is a list of user groups defined on this wiki, with their associated access rights. There may be additional information about individual rights.

Legend:

  • Granted right
  • Revoked right
GroupRights
(all)
(*)
  • Automatically log in with an external user account (autocreateaccount)
  • Create short URLs (urlshortener-create-url)
  • Edit your own preferences (editmyoptions)
  • Edit your own private data (e.g. email address, real name) and request password reset emails (editmyprivateinfo)
  • Edit your own watchlist (note that some actions will still add pages even without this right) (editmywatchlist)
  • Enable two-factor authentication (oathauth-enable)
  • Merge their account (centralauth-merge)
  • Read pages (read)
  • Use of the write API (writeapi)
  • View abuse filters (abusefilter-view)
  • View the abuse log (abusefilter-log)
  • View your own private data (e.g. email address, real name) (viewmyprivateinfo)
Autoconfirmed users
(autoconfirmed)
Bots
(bot)
(list of members)
  • Bypass blocked external domains (abusefilter-bypass-blocked-external-domains)
  • Bypass the spam block list (sboverride)
  • Perform CAPTCHA-triggering actions without having to go through the CAPTCHA (skipcaptcha)
Bureaucrats
(bureaucrat)
(list of members)
  • Override the spoofing checks (override-antispoof)
Check users
(checkuser)
(list of members)
  • Check users' IP addresses and other information (checkuser)
  • View IP addresses used by temporary accounts without needing to check the preference (checkuser-temporary-account-no-preference)
  • View private data in the abuse log (abusefilter-privatedetails)
  • View the AbuseFilter private details access log (abusefilter-privatedetails-log)
  • View the checkuser log (checkuser-log)
  • View the log of access to temporary account IP addresses (checkuser-temporary-account-log)
Push subscription managers
(push-subscription-manager)
(list of members)
  • Manage all push subscriptions (manage-all-push-subscriptions)
Stewards
(steward)
(list of members)
  • Edit all user rights (userrights)
  • Forcibly create a local account for a global account (centralauth-createlocal)
  • Lock or unlock global account (centralauth-lock)
  • Make and remove global blocks (globalblock)
  • Suppress or hide global account (centralauth-suppress)
  • Unmerge global account (centralauth-unmerge)
Suppressors
(suppress)
(list of members)
  • Block or unblock a username, hiding or unhiding it from the public (hideuser)
  • Delete and undelete specific log entries (deletelogentry)
  • Delete and undelete specific revisions of pages (deleterevision)
  • Hide entries in the abuse log (abusefilter-hide-log)
  • Search deleted pages (browsearchive)
  • View deleted history entries, without their associated text (deletedhistory)
  • View deleted text and changes between deleted revisions (deletedtext)
  • View hidden abuse log entries (abusefilter-hidden-log)
  • View private logs (suppressionlog)
  • View revisions hidden from any user (viewsuppressed)
  • View, hide and unhide specific revisions of pages from any user (suppressrevision)
Administrators
(sysop)
(list of members)
  • Access the log of two-factor authentication changes (oathauth-view-log)
  • Create or modify abuse filters (abusefilter-modify)
  • Create or modify what external domains are blocked from being linked (abusefilter-modify-blocked-external-domains)
  • Create short URLs (urlshortener-create-url)
  • Disable global blocks locally (globalblock-whitelist)
  • Disable two-factor authentication for a user (oathauth-disable-for-user)
  • Forcibly create a local account for a global account (centralauth-createlocal)
  • Manage short URLs (urlshortener-manage-url)
  • Mass delete pages (nuke)
  • Modify abuse filters with restricted actions (abusefilter-modify-restricted)
  • Override the disallowed titles or usernames list (tboverride)
  • Override the spoofing checks (override-antispoof)
  • Perform CAPTCHA-triggering actions without having to go through the CAPTCHA (skipcaptcha)
  • Revert all changes by a given abuse filter (abusefilter-revert)
  • Verify whether a user has two-factor authentication enabled (oathauth-verify-user)
  • View abuse filters marked as private (abusefilter-view-private)
  • View detailed abuse log entries (abusefilter-log-detail)
  • View log entries of abuse filters marked as private (abusefilter-log-private)
  • View short URLs management log (urlshortener-view-log)
  • View the disallowed titles list log (titleblacklistlog)
Users
(user)
(list of members)
  • Bypass automatic blocks of Tor exit nodes (torunblocked)
  • Enable two-factor authentication (oathauth-enable)
  • Manage OAuth grants (mwoauthmanagemygrants)
  • Request wikis (requestwiki)
  • View the spam block list log (spamblacklistlog)
  • user (user)

Namespace restrictions

NamespaceRight(s) allowing user to edit
MediaWiki
  • Edit the user interface (editinterface)