Roles and permissions
Choose the right platform role for each person in your organization, from owners and administrators to viewers, auditors and employees.
Every person in a platform organization has a roleThe role decides what they can see and change in the compliance program. People in the organization sidebar.
Choose a role
Section entitled “Choose a role”It uses the slightest privilege that still allows someone to do their job.
| Role | For whom is | Ce pot face |
|---|---|---|
| Owner | A small set of trusted leaders who should never lose access to the organization | Everything, including organization settings, setting SSO/SCIM and removing people |
| Admin | Compliance, security or IT team colleagues running the schedule day-to-day | Manage compliance program and most people; you can’t delete the organization, remove members, change SSO/SCIM settings, or assign owner |
| Viewer | Participants who need visibility without editing the program | Read the program; sign and approve documents on request |
| Auditor | Internal or external auditors examining evidence | Read the records required for audit; no daily program administration |
| Employee | Personnel who only have to perform assigned tasks | View allocated, signed and approved employee documents when requested |
The person who creates the organization becomes a OwnerKeep at least two owners so that settings and access remain recoverable if a person leaves.
Invite people and assign roles
“Invite people and assign roles”- Open People and click Add Person.
- Enter your name and email address, and then select a role.
- Optionally, note whether they are an employee, contractor, or service account – this is only the organizational context and does not change permissions.
- Send the invitation so that they can activate their account.
Until they accept the invitation, they cannot use the organization. People if needed.
When you no longer have access to:
- Deactivate to block the connection while you keep the record.
- Remove They no longer appear in the organization.
Only owners can remove people. the platform will not allow you to disable, remove or dismantle the last remaining owner.
Where to Manage Platform Roles
Section entitled “Where to manage the platform roles”Keep membership roles in People, or let your identity provider set them up. SCIM creates people as Employee; assign the final role in People.
Review who has access
Section titled “Review who has access”Open the audit log under Settings → Audit Log to see who has changed people, roles, and other records in your organization. Owners and administrators can export the log when you need a dated track for an audit.