It doesn't look like URL Links are access controlled per https://support.ptc.com/appserver/cs/view/solution.jsp?n=CS56701. There may be some hard-coded checks in place to determine what a particular type of user can do, but it doesn't look like these can be modified via ACLs.
↧