---
sourceDocument: Xanadu Enable AI
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/xanadu/intelligent-experiences

 Release :

    - xanadu

ft:locale :

    - en-US

ft:publication_title :

    - Xanadu Enable AI

ft:clusterId :

    - platai

bundleId :

    - platai

workflow :

    - Platform


---

# Security for Now Assist Skill Kit

# Security for Now Assist Skill Kit {#ariaid-title1}

* Release version: Xanadu
* 
* Updated September 4, 2025
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

Enable security controls for Now Assist skills and custom skills through access control lists (ACLs) and user identities.

## Access control lists {#security-nask__section_v1z_hhb_hgc}

The access control lists in Now Assist Skill Kit enhance the security of Now Assist skills and are set to determine users who can invoke a skill.

## Configure ACLs in Now Assist Skill Kit {#security-nask__section_fkx_whb_hgc}

You can configure ACLs for Now Assist Skill Kit when you create or edit a skill or when you activate a skill from Now Assist Admin console.

ACLs configured in Now Assist Skill Kit for are Allow-If and role-based.

The Allow-If logic grants access to data or resources if any of the conditions in the ACL are met. The other type of ACL is Deny-Unless. Deny-Unless ACLs block access
to data or resources unless a condition is met, even if there are other conditions like Allow-If ACLs that would normally grant someone access.

There are two possible options for ACLs created in Now Assist Skill Kit:

* Any authenticated user: Grants access to any user authenticated on the instance, regardless of role
* Select roles: Requires you to select the roles that grant access

{#security-nask__ul_c3p_31w_ngc}

Each skill must have its own unique ACL. You can't create a skill or save changes to a skill without an ACL. To configure an ACL for a skill, see .

