Roles & permissions

Built-in roles, custom roles, and the full list of permission keys that control what each team member can do.

Every team member in a project has a role, and every role is a set of granular permissions. All permission checks are enforced on the backend; the UI only hides what you cannot do anyway.

Built-in roles

RoleDescription
OwnerFull access to every permission. The owner cannot be removed from the project.
AdminEverything except disconnecting GitHub, removing Tebex stores, and deleting the project.
StaffHandles tickets day to day: reply, assign, change status, use AI tools, view CSAT, but no team, role, or settings management.

Admin and Staff are created with every project as sensible defaults. Only the Owner role is locked; the others can be adjusted like custom roles.

Custom roles

You can create custom roles with any combination of the permissions below. Roles have a position that defines their hierarchy, and the Reorder roles (change hierarchy) permission controls who can change that hierarchy.

Permission reference

Tickets

PermissionWhat it allows
View all ticketsView all tickets in the project
Create ticketsCreate tickets
Update ticketsUpdate tickets
Delete ticketsDelete tickets
Assign ticketsAssign tickets to team members
Change ticket statusChange ticket status
Change ticket priorityChange ticket priority
Configure auto-assignment rulesConfigure auto-assignment rules
Use AI to generate response suggestionsUse AI to generate response suggestions
View ticket settingsView ticket settings
Update ticket settingsUpdate ticket settings
Manage GitHub issues on ticketsCreate, link, and unlink GitHub issues from tickets

The View all tickets effect: this permission decides ticket visibility. With it, a member sees every ticket in the project. Without it, they only see tickets they are assigned to, useful for external collaborators or trainees who should only work their own queue.

The restriction covers reading and writing alike: a member limited to their assignments cannot post a message, change read state, or assign somebody on a ticket outside their queue — including assigning themselves to reach it. It also applies to the real-time connection, so the ticket's live updates are never delivered for a ticket they cannot open.

Messages

PermissionWhat it allows
Send messagesSend messages
Send internal notesSend internal notes (never visible to customers)
Edit own messagesEdit own messages
Delete own messagesDelete own messages
Delete any messageDelete any message

Team

PermissionWhat it allows
View team membersView team members
Invite team membersInvite team members
Remove team membersRemove team members
Change member rolesChange member roles

Roles

PermissionWhat it allows
View custom rolesView custom roles
Create custom rolesCreate custom roles
Update custom rolesUpdate custom roles
Delete custom rolesDelete custom roles
Reorder roles (change hierarchy)Reorder roles (change hierarchy)

Integrations

PermissionWhat it allows
View integrationsView integrations
Configure GitHub integrationConfigure the GitHub integration
Disconnect GitHubDisconnect GitHub
Configure Discord integrationConfigure the Discord integration
Send portal embed to Discord channelsSend the portal embed to Discord channels

Project

PermissionWhat it allows
View project settingsView project settings
Update project settingsUpdate project settings
Delete projectDelete the project

AI

PermissionWhat it allows
View AI settings and usageView AI settings and usage
Configure AI settings and scheduleConfigure AI settings and schedule
Add/delete knowledge entriesAdd and delete knowledge entries
Generate knowledge from ticket conversationsGenerate knowledge from ticket conversations
Approve or reject pending AI messagesApprove or reject pending AI messages
Toggle AI auto-response on/off for individual ticketsToggle AI auto-response per ticket

Commands

PermissionWhat it allows
Manage chat command settingsManage chat command settings
Create and edit commands shared with the whole projectCreate and edit commands shared with the whole project

Tebex

PermissionWhat it allows
Add Tebex storesAdd Tebex stores
Update Tebex storesUpdate Tebex stores
Remove Tebex storesRemove Tebex stores
Create Tebex coupons from ticketsCreate Tebex coupons from tickets
Revoke Tebex coupons from ticketsRevoke Tebex coupons from tickets
Create Tebex gift cards from ticketsCreate Tebex gift cards from tickets
Revoke Tebex gift cards from ticketsRevoke Tebex gift cards from tickets
View a customer's purchases and orders from a ticketView a customer's purchases and orders from a ticket

CSAT

PermissionWhat it allows
View CSAT analytics and survey responsesView CSAT analytics and survey responses
Configure CSAT settingsConfigure CSAT settings

Cookies & Privacy

We use cookies to make your experience on this website better.