# Bug report Wazo Auth: forbidden group modification

**URL:** <https://wazo-platform.discourse.group/t/bug-report-wazo-auth-forbidden-group-modification/741>\
**Category:** English\
**Created:** [March 5, 2021, 7:08pm UTC](https://wazo-platform.discourse.group/t/bug-report-wazo-auth-forbidden-group-modification/741 "2021-03-05T19:08:53Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![Sven](https://yyz2.discourse-cdn.com/free1/user_avatar/wazo-platform.discourse.group/sven/32/326_2.png) [@Sven](https://wazo-platform.discourse.group/u/Sven)\
**Post date:** [March 5, 2021, 7:08pm UTC](https://wazo-platform.discourse.group/t/bug-report-wazo-auth-forbidden-group-modification/741/1 "2021-03-05T19:08:53Z")

</div>

If this is the wrong place for bug reports, please point me to the right spot.

In Wazo UI, credentials, identities, whenever you want to save the identity,  
there es an error  
`DELETE http://localhost:9497/0.1/groups/38869039-5e43-4c71-85c9-x/users/2e33d0d4-801b-4e3a-bac7-x: {'message': 'Forbidden group modification: "38869039-5e43-4c71-85c9-x"', 'error_id': 'forbidden-group', 'details': {'uuid': '38869039-5e43-4c71-85c9-x'}, 'timestamp': 1614971013.5731325, 'resource': 'groups'} `  
I tried to assign a policy to the identity. With API, everything works fine so I assume it is a bug.

---

<div class="post-metadata">

**Author:** ![quintana](https://yyz2.discourse-cdn.com/free1/user_avatar/wazo-platform.discourse.group/quintana/32/916_2.png) [@quintana](https://wazo-platform.discourse.group/u/quintana)\
**Post date:** [March 5, 2021, 10:10pm UTC](https://wazo-platform.discourse.group/t/bug-report-wazo-auth-forbidden-group-modification/741/2 "2021-03-05T22:10:53Z")

</div>

Hello,

To report bug please use our jira. [https://wazo-dev.atlassian.net](https://wazo-dev.atlassian.net)

Sylvain
