We are currently evaluating options to lock down our Master Course Offerings to prevent unauthorized or accidental edits by Course Builders, and I’d love to learn how other institutions handle this.
Our Setup & Constraints:
Hierarchy: Organization > Department > Course Template > Course Offering
Master Location: Housed directly at the Course Offering level (identifiable by MSTR in the Course Name and Code).
Cascading Roles: Course Builders have a cascading role assigned at higher org units.
Auto-Course Copy: We cannot move Master courses out of their existing Departments or hierarchy structure, as doing so breaks our automated course copy pipelines.
Goal: We need an easy, repeatable way to "toggle" edit access on and off for Course Builders on these MSTR offerings (e.g., locking during active terms, unlocking during review/maintenance cycles) without restructuring our org units.
What we are considering:
Using Bulk Course Enrolment (BCE) to swap Course Builders between standard and "Read-Only" custom roles on MSTR offerings.
Automating role shifts via Intelligent Agents or API scripts.
Leveraging course active/inactive dates or section-level role overrides.
Questions for the Community:
How does your institution restrict edits on Master courses while keeping automated copy processes intact?
If you use a custom "Read-Only Course Builder" role, which specific permissions did you find critical to strip out at the Course Offering level?
Has anyone implemented an API or Intelligent Agent workflow for this that worked particularly well?
Thanks in advance for sharing your strategies and lessons learned!