Delete an access policy
Admins can delete an access policy from the resource access settings or the managed access table. A confirmation dialog checks for active dependencies, warns you about side effects, and removes the policy when it is safe to do so.
Deleting a policy removes the resource from any catalogs and stops Ploy from tracking expiry on existing active grants. It does not automatically revoke access that has already been granted.
Delete from resource access settings
Open the resource you want to remove the policy from, then delete the access policy from the resource settings dialog.
Go to the resource page and open the resource access settings.
Click Delete access policy.
Review the confirmation dialog. It shows Checking whether this access policy can be deleted... while it validates dependencies.
If deletion is allowed, read the warning details, then click Delete to confirm.
The dialog closes and a toast shows Access policy deleted. If the request fails, the toast shows Could not delete access policy.
Delete from the managed access table
Delete a policy directly from the managed access list without opening the resource page first.
Go to the managed access table.
Find the resource whose policy you want to remove.
Click the trash action labeled Delete access policy.
Review the confirmation dialog, then click Delete if the action is allowed.
The dialog closes and a toast shows Access policy deleted. If the request fails, the toast shows Could not delete access policy.
When deletion is blocked
The dialog shows This access policy can't be deleted yet. and the button changes to Close when any of these conditions are present:
There is an active access review for the resource.
There are open access requests for the resource.
Complete or archive the review first, then try again.
Warning before deletion
When deletion is allowed, the dialog warns you about the following impacts:
The resource will be removed from any catalogs it belongs to.
Ploy will stop tracking expiry on active grants, so access will not be auto-revoked.
The action cannot be undone.
What happens after deletion
Once confirmed, the access policy is removed immediately. The resource is no longer considered managed, and any associated catalog memberships and expiry tracking are removed with it.
Learn more about how access policies work in Access Policy and what managed access means in What is Managed Access?.