# Data Concepts & Access

## Data Concepts Overview

The following diagram illustrates the data concepts of AttackForge:

<figure><img src="https://372186556-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-M8s1QY2Q6YTHB4a6DMu%2Fuploads%2FxMfKgRcS1WP7pwiIKceb%2FAF%20Data%20Concepts.png?alt=media&#x26;token=09ee168e-d602-4153-8524-56ee90d80be5" alt=""><figcaption></figcaption></figure>

## Access Control Overview

Access Controls in AttackForge can be configured for the following:

* Custom Field-Level Access Control
* Portfolios
* Streams
* Project Requests
* Projects
* Asset Libraries
* Writeup Libraries
* Report Templates
* Groups
* Test Suites
* Flows
* Workspace
* Reports
* Pages
* Project Test Cases
* Retests
* Attack Chains
* Self-Service RESTful APIs - access per API Endpoint
* Self-Service Events APIs - access per API Event
* AI Model Context Protocol (MCP) - access per Tool
