> For the complete documentation index, see [llms.txt](https://docs.rhinofcp.com/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.rhinofcp.com/projects/run-pre-approved-code-only.md).

# Run Pre-approved Code Only

This article explains how to set up your Site Permissions to limit collaborators to run pre-approved code only. See the video below for a guide through and below for a step by step description.

This Site-level permissions setting enables you to limit the code that Collaborators may run using your data. Once **Pre-approved Code Only** is set to **Yes,** you will be able to manage a list or container images that your collaborators can use.

To add or remove a container image from the pre-approved code list, follow these steps:

1. Make sure you know your Collaborator's workgroup name and the exact name of the container image they wish to run.
2. In your FCP project, navigate to the **Collaborators View** and click on the **Permissions Policy** tab.
3. Under your site's Site-level Permission section, click on the gear icon next to the pre-approved code permission:

![](/files/3178c91b16978c4c4038266cf1daea991ab7e868)

4. Click the **+ Add Container Image** button

![](/files/15d9cbf61e7b3f44284b6d4fa17add7007fafad7)

5. A new row will be added to the table. Select your Collaborator's workgroup name, and type the Container Image name in the new row.
6. Click **Submit** to save changes. If the Container Image name does not exist in the collaborator's ECR, this step will fail.
