Permissions

Goal: Control what team members can do.


Role Definitions

RoleCreateEditDeleteInviteManage
Viewer✗✗✗✗✗
Editor✓✓✗✗✗
Admin✓✓✓✓✓

What Each Role Can Do

Viewer

  • View workspace and surfaces
  • Run existing warm queries
  • See API responses
  • Cannot modify anything

Editor

  • Everything Viewer can do
  • Create connections, surfaces, warm queries
  • Edit existing resources
  • Propose changes (requires approval)

Admin

  • Everything Editor can do
  • Delete resources
  • Invite and remove team members
  • Change roles
  • Manage workspace settings

Changing Roles

  1. Go to Team tab
  2. Find the user
  3. Click their current role
  4. Select new role
  5. Confirm

Role Change Audit

Every role change is logged:

{
  "action": "role_change",
  "user": "sarah@company.com",
  "oldRole": "Editor",
  "newRole": "Admin",
  "changedBy": "mike@company.com",
  "timestamp": "2026-01-18T10:30:00Z"
}

Best Practices

PracticeWhy
Minimum necessary accessReduce risk
Few AdminsLimit who can delete
Use Viewers for external partnersRead-only access
Review roles periodicallyRemove stale access

Governance applies to team management too. Every permission change is logged and attributable.


Next Steps

If you want to...Go to...
Deep dive on access modelUser Management →
Manage API keysSecurity →
On this page