Descriptions for resources including datasets, jobs, tables, models, routines, and rowAccessPolicies now contain a dedicated '# IAM Permissions' section. This update provides specific mapping between API calls and IAM roles, such as clarifying that tabledata.insertAll requires permissions on the table and the parent dataset, and detailing the specific permissions needed for job creators versus administrative users in jobs.get and jobs.cancel.
Released (4d lead)
Docs