# Manage Role Scope Tags

*Applies to: Patch My PC Publisher*\
*Available at level: All Custom Products, All Products, Vendor, Product*\
*Available on tab: Intune Apps, Intune Updates*

## Overview

Manage Role Scope Tags allows you to control which Intune role scope tags are applied to Win32 applications created by the Publisher.

<figure><img src="https://3773699522-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-MX7dvS0r_4fc0AikgJS%2Fuploads%2FGAw5TeHevLpk9WJuJJK5%2Fimage.png?alt=media&#x26;token=1ac21b99-7d0d-4228-8ffe-62d57c1ebf12" alt="Manage Role Scope Tags" width="563"><figcaption></figcaption></figure>

Role scope tags are part of Intune RBAC and are used to limit which administrators can view or manage specific resources. By assigning scope tags, you ensure that only admins with matching role assignments and scope permissions can see or modify the applications created by the Publisher.

## Select a Role Scope Tag

The list of available role scope tags is retrieved directly from your Intune tenant. You can select one or more tags to associate with an application.

<figure><img src="https://3773699522-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-MX7dvS0r_4fc0AikgJS%2Fuploads%2FUqdF9fGFZaBXHvX5uEPg%2Fimage.png?alt=media&#x26;token=e6465883-5241-476c-ae15-d7753ac38533" alt="Select Scope Tags" width="375"><figcaption></figcaption></figure>

When a Win32 application is created by the Publisher, the selected role scope tags are applied automatically during publishing.

During each synchronization, the Publisher evaluates existing Win32 applications that it previously created and compares the scope tags configured in the Publisher with the tags assigned in Intune. Any scope tags selected in the Publisher but missing on the Intune app are added.

{% hint style="info" %}
**Note**

Scope tags that already exist on the Intune app but are not defined in the Publisher are not removed.

This behavior ensures the Publisher configured tags are always present while allowing additional tags to be managed directly in Intune if required.
{% endhint %}

{% hint style="warning" %}
**Important**

Role scope tags only affect administrator visibility and management. They do not control application installation, availability, or assignment behavior.
{% endhint %}


---

# Agent Instructions: Querying This Documentation

If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter:

```
GET https://docs.patchmypc.com/patch-my-pc-publisher/customizations-right-click-options/manage-role-scope-tags.md?ask=<question>
```

The question should be specific, self-contained, and written in natural language.
The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
