Skip to content

Roles and Permissions

Roles combine permission sets and optional resource restrictions.

Each role has two main tabs:

  • Settings: role name and permission groups
  • Resources: template/attribute-level restrictions

Use Settings to define what this role can do.

  • Rename the role
  • Grant or remove permissions across different feature areas
  • Role Management
  • Billing
  • Access Tokens
  • Project Management
  • Attribute Management
  • File Management
  • Template Management
  • Entity Management
  • Dashboard Management
  • Automation

show the Settings tab with permission groups, selected counters, and expanded group details.

Use Resources to limit access to specific templates and attributes.

  • Template Restriction
  • Attribute Restriction
  • Deny: no access
  • View Only: read-only access
  • Edit: modify existing data
  • Full: unrestricted actions for that resource
  1. Open the role and switch to Resources.
  2. Add template or attribute restrictions.
  3. Set access level for each restriction row.
  4. Save changes.
  5. Validate behavior with a test user account.

show Resources tab with mixed template and attribute restrictions.

  1. Start from the job function (for example: Analyst, Manager, Admin).
  2. Grant minimum required permissions in Settings.
  3. Apply resource restrictions only where stricter boundaries are needed.
  4. Test with a non-owner account in a real project context.
  5. Review roles regularly as teams and workflows evolve.
  • Can the user open only the intended modules?
  • Can the user edit only intended templates/entities?
  • Are restricted templates/attributes hidden or blocked as expected?
  • Are changes saved before closing role details?