Permissions
The permissions interface allows you to configure core system-level permissions.
There is a separate view for system, automation and Corteza Low Code. |
These rules apply to automation (automation scripts and workflows). If a user is not allowed to access Low Code, nor will the automation. |
Corteza system
System service permissions
- Allow access to administration
-
Determines if the role is allowed to access the administration panel (the web application being defined here),
- Grant permission on system service
-
Determines if the role is allowed to grant permissions on system service,
- Access all settings
-
Determines if the role is allowed to access any setting defined under the system,
- Manage all settings
-
Determines if the role is allowed to manage and edit any setting defined under the system,
- Create new organization
-
Determines if the role is allowed to create a new organization.
- Create new role
-
Determines if the role is allowed to create a new role.
- Create new user
-
Determines if the role is allowed to create a new user.
- Create new application
-
Determines if the role is allowed to create a new application.
- Allow reminder assignment
-
Determines if the role is allowed to assign reminders to other users.
Organizations
- Access to all organizations
-
Determines if the role is allowed to access any organization.
Applications
- Read any application
-
Determines if the role is allowed to access any application.
- Update any application
-
Determines if the role is allowed to update any application.
- Delete any application
-
Determines if the role is allowed to delete any application.
Users
- Read any user
-
Determines if the role is allowed to access any user.
- Update any user
-
Determines if the role is allowed to update any user.
- Delete any user
-
Determines if the role is allowed to delete any user.
- Suspend any user
-
Determines if the role is allowed to suspend any user.
- Unsuspend any user
-
Determines if the role is allowed to unsuspend any user.
- Show email details
-
Determines if the role is allowed to see the email address of any user.
- Show name details
-
Determines if the role is allowed to see the name of any user.
- Impersonate any user
-
Determines if the role is allowed to impersonate any users.
Roles
- Read any role
-
Determines if the role is allowed to see any role.
- Update any role
-
Determines if the role is allowed to update any role.
- Delete any role
-
Determines if the role is allowed to delete any role.
- Manage members for any role
-
Determines if the role is allowed to add/remove members from any role.
Corteza Low Code
Service permissions
- Access to compose
-
Determines if the role is allowed to access Corteza Low Code.
- Create namespaces
-
Determines if the role is allowed to create namespaces for Corteza Low Code.
- Grant permissions on compose service
-
Determines if the role is allowed to manage permissions for Corteza Low Code.
- Access all settings
-
Determines if the role is allowed to read any setting for Corteza Low Code.
- Manage all settings
-
Determines if the role is allowed to manage any setting for Corteza Low Code.
Namespaces permissions
- Access any namespace
-
Determines if the role is allowed to access any Corteza Low Code namespace.
- Update any namespace
-
Determines if the role is allowed to update any Corteza Low Code namespace.
- Delete any namespace
-
Determines if the role is allowed to delete any Corteza Low Code namespace.
- Manage any namespace
-
Determines if the role is allowed to manage any Corteza Low Code namespace.
- Create modules under any namespace
-
Determines if the role is allowed to create modules for any Corteza Low Code namespace.
- Create charts under any namespace
-
Determines if the role is allowed to create charts for any Corteza Low Code namespace.
- Create pages under any namespace
-
Determines if the role is allowed to create pages for any Corteza Low Code namespace.
Modules permissions
- Read any module
-
Determines if the role is allowed to access any Corteza Low Code module.
- Update any module
-
Determines if the role is allowed to update any Corteza Low Code module.
- Delete any module
-
Determines if the role is allowed to delete any Corteza Low Code module.
- Create record under any module
-
Determines if the role is allowed to create records for any Corteza Low Code module.
- Read records under any module
-
Determines if the role is allowed to access records for any Corteza Low Code module.
- Update records under any module
-
Determines if the role is allowed to update records for any Corteza Low Code module.
- Delete records under any module
-
Determines if the role is allowed to delete records for any Corteza Low Code module.
Module fields permissions
- Read any module field
-
Determines if the role is allowed to see any Corteza Low Code module field.
- Update any module field
-
Determines if the role is allowed to update any Corteza Low Code module field.
Automation
Service permissions
- Access to automation
-
Determines if the role is allowed to access Corteza automation.
- Grant permissions on automation
-
Determines if the role is allowed to manage permissions for Corteza automation.
- Create new workflow
-
Determines if the role is allowed to create workflows for Corteza automation.
- Search triggers
-
Determines if the role is allowed to search for automation triggers.
- Search sessions
-
Determines if the role is allowed to search for automation sessions.
Namespaces permissions
- Read workflow
-
Determines if the role is allowed to access automation workflows.
- Update workflow
-
Determines if the role is allowed to update automation workflows.
- Delete workflow
-
Determines if the role is allowed to delete automation workflows.
- Undelete workflow
-
Determines if the role is allowed to restore automation workflows.
- Execute workflow
-
Determines if the role is allowed to execute automation workflows.
- Manage workflow triggers
-
Determines if the role is allowed to manage automation workflow triggers.
- Manage workflow sessions
-
Determines if the role is allowed to manage automation workflow sessions.