I’m surprised Home Assistant still didn’t have users with (real) hierarchy of privileges.
I mean, if i add a simple user with a defined dashboard, it still can browse the entire entities of the system and mess with it.
I’m coming from other home automation systems and this is a basic functionality… like in every operating system by the way.
It is very interesting to add integrations or remove bugs but security should be the main priority…
So please, allow us to create users with for example, a very limited access to a specific dashboard and nothing more, no more-info windows, nothing to the sidebar, no search button, no voice assistant, etc…
You can already create a read-only user (Don’t know how to do it in the UI thou).
I discovered it and used it for a long time for my entrance tablet the “hard way”.
If you want to give my way a try, you can go in the .storage/auth file and change the group of the user to system-read-only
Exemple:
In addition, you can change the visibility of each view for every user.
It could be improved, I agree
EDIT To hide specific items (like navigation, side bars), the HACS kiosk mode is also an alternative.
I know that a lot of things could be integrated to HA directly without the hassle to add additional stuffs but it is already something