Access control

Required access privileges

Calling the Snowpipe Streaming API requires a role with the following privileges:

ObjectPrivilege
TableINSERT. When schema evolution is enabled, the role also requires EVOLVE SCHEMA or OWNERSHIP.
DatabaseUSAGE
SchemaUSAGE
PipeOPERATE is required only for named (custom) pipes, not default pipes.
External volumeUSAGE, required when ingesting into an Iceberg table that uses an external volume you manage. This isn’t required for Iceberg tables that use Snowflake storage.