The platform permissions model balances flexibility, collaboration, and access. Members of your organization can have access to the features they need, while limiting access to sensitive information and functionalities.
On this page:
User groups overview
The permissions model uses groups to regulate access of platform users. Groups are a set of security permissions that give or restrict access to various areas and functions of the platform. Groups are built using:
- Permissions: Access to features and the ability to perform actions on the platform. For example, the ability to run automated scanning, view projects and tasks, or edit monitoring settings.
- Entities: The platform’s hierarchal levels. For example, the workspace entity gives you access to all websites/apps in a workspace whereas the website/app entity gives you access to a specific website/app.
Groups are a combination of one entity and a set of permissions. Users are added to group(s). A group gives its members access to the platform based on the assigned set of permissions, at the entity level.
Platform user groups
The platform has four user groups:
Organization administrator
Organization administrators have administrative access to all workspaces and websites/apps in their organization. Organization administrators can access and add users to any workspace, website/app, and add other organization administrators. Note that organization administrator is the highest permissions level and should be used sparingly.
Workspace administrator
Workspace administrators have administrative access to all websites/apps in their workspace. Members of this group can use all the functions of a workspace user and perform administrative tasks, like adding users and updating monitoring settings.
Workspace user
Workspace users can access and work within all websites/apps in their workspace. They can access and use accessibility testing features, create projects and tasks, and use issue tracking connections.
Website/app user
Website/app users work within the websites/apps they have access to. Members of this group can access and use accessibility testing features like scanning, design evaluations, and evaluations. Use this group for people who don't need access to every website/app in your workspace.
User group details
Can’t find a feature? Contact your Customer Success Manager for more information.
The table below describes which actions each user groups can perform.
Feature | Actions | Organization administrator | Workspace administrator | Workspace user | Website/app user |
---|---|---|---|---|---|
API |
View, create, and delete API keys. |
✓ | ✓ | ✓ | |
Automated flows |
View, create, edit, and delete automated flows. |
✓ | ✓ | ✓ | ✓ |
Components |
View, create, edit, archive, and restore components. View component scan results. |
✓ | ✓ | ✓ | ✓ |
Design evaluations |
View and download design evaluation results. |
✓ | ✓ | ✓ | ✓ |
Evaluations |
All manual evaluations functionality. |
✓ | ✓ | ✓ | ✓ |
Files |
View and download files. |
✓ | ✓ | ✓ | |
Files |
Upload new files and delete files. Edit file details. |
✓ | ✓ | ||
Governance and reporting |
View the Dashboard. |
✓ | ✓ | ✓ | |
Governance and reporting |
Set policies and download the Most Compromised Websites/apps excel report. |
✓ | ✓ | ✓ | |
Issue tracking |
View issue tracking connections, connection status, and linked tickets. Refresh all tasks. |
✓ | ✓ | ✓ | |
Issue tracking |
Configure required fields and progress mapping. Connect and remove an issue tracking instance from a project. |
✓ | ✓ | ✓ | |
Issue tracking |
Create, edit, reauthorize, and remove an issue tracking connection from the platform. |
✓ | |||
Monitoring |
View monitoring scan results and historical data. |
✓ | ✓ | ✓ | ✓ |
Monitoring |
Set up monitoring, update monitoring settings, show, hide, and flag monitoring pages, turn off monitoring, remove monitoring scans. |
✓ | ✓ | ||
Notifications |
View your notifications and edit your notification settings. |
✓ | ✓ | ✓ | ✓ |
Pages |
View, create, edit, and remove pages. |
✓ | ✓ | ✓ | ✓ |
Upload, test, rename, and remove PDFs. View PDF inventory and PDF test reports. |
✓ | ✓ | ✓ | ||
Portfolio |
View the portfolio and list of websites/apps. |
✓ | ✓ | ✓ | ✓ |
Portfolio |
Edit websites/apps and workspaces, archive websites/apps, and download the Portfolio report. |
✓ | ✓ | ||
Projects |
View all projects in a workspace. |
✓ | ✓ | ✓ | |
Projects |
Create, edit, archive, restore, and delete projects. all projects in a workspace. |
✓ | ✓ | ✓ | |
Scans |
All automated scanning functionality. |
✓ | ✓ | ✓ | ✓ |
Tasks |
View tasks, task details, task status, and issue tracking summary card when a task is pushed to the issue tracking project. Request accessibility support. |
✓ | ✓ | ✓ | ✓ |
Tasks |
Push tasks to Jira and view the issue tracking summary card. These actions are only available for Accelerate, Enterprise, and customers who joined Level Access before February 20th, 2023. |
✓ | ✓ | ✓ | |
Tasks |
Create, edit, assign, delete, and export tasks. |
✓ | ✓ | ✓ | |
Testing SDKs |
Activate and set up testing SDKs. |
✓ | |||
Testing SDKS |
Send testing results to platform. |
✓ | ✓ | ✓ | ✓ |
User management |
View, add, edit, and remove users (except organization administrators) from any workspace or website/app that you can access. |
✓ | ✓ | ||
User management |
View, add, edit, assign, and remove users (all user groups) from any workspace or website/app in the organization. |
✓ | |||
UserWay |
View, add, edit, and remove UseWay integrations. |
✓ | |||
Websites/apps |
View and edit certain website/app details. |
✓ | ✓ |
Comments
0 comments
Article is closed for comments.