How much stress would it cause if we migrated more of the Zope security architecture towards standard terminology? I believe the thing Zope calls a "role" is typically called a "group." A group has a set of permissions associated with it. A principal is associated with a set of groups, which implies the permissions of the group. Jeremy