Create a role
1
Start a new role
Select New role.
2
Name the role
Enter a concise Role name that describes the job the person performs.
3
Select permissions
Expand each permission group and select only the actions the role needs. Selecting a group
selects all permissions in that group.
4
Create the role
Review the permission count, then select Create role.
Edit a custom role
- Select the role from the list.
- Change the Role name or permission selections.
- Select Save changes.
- Review users assigned to the role when the change affects access.
Delete a custom role
- Reassign members who still use the role.
- Select the role.
- Select Delete role in the toolbar or Danger zone.
- Review the warning, then select Delete role.
Apply least privilege
- Create roles around a job function, not a specific person.
- Separate user administration from SSO, integrations, and data access when different teams own those systems.
- Review custom roles when responsibilities change.
- Keep feature-specific access disabled until the workspace has that feature.