jump to content

Roles and permissions

Choose the right platform role for each person in your organization, from owners and administrators to viewers, auditors and employees.

Show as Markdown

Every person in a platform organization has a roleThe role decides what they can see and change in the compliance program. People in the organization sidebar.

It uses the slightest privilege that still allows someone to do their job.

Role For whom is Ce pot face
Owner A small set of trusted leaders who should never lose access to the organization Everything, including organization settings, setting SSO/SCIM and removing people
Admin Compliance, security or IT team colleagues running the schedule day-to-day Manage compliance program and most people; you can’t delete the organization, remove members, change SSO/SCIM settings, or assign owner
Viewer Participants who need visibility without editing the program Read the program; sign and approve documents on request
Auditor Internal or external auditors examining evidence Read the records required for audit; no daily program administration
Employee Personnel who only have to perform assigned tasks View allocated, signed and approved employee documents when requested

The person who creates the organization becomes a OwnerKeep at least two owners so that settings and access remain recoverable if a person leaves.

Invite people and assign roles

“Invite people and assign roles”
  1. Open People and click Add Person.
  2. Enter your name and email address, and then select a role.
  3. Optionally, note whether they are an employee, contractor, or service account – this is only the organizational context and does not change permissions.
  4. Send the invitation so that they can activate their account.

Until they accept the invitation, they cannot use the organization. People if needed.

When you no longer have access to:

  • Deactivate to block the connection while you keep the record.
  • Remove They no longer appear in the organization.

Only owners can remove people. the platform will not allow you to disable, remove or dismantle the last remaining owner.

Keep membership roles in People, or let your identity provider set them up. SCIM creates people as Employee; assign the final role in People.

Open the audit log under Settings → Audit Log to see who has changed people, roles, and other records in your organization. Owners and administrators can export the log when you need a dated track for an audit.

Ultima actualizare: