Actions and scopes
A key such ascontacts.read allows reading contacts. Its scope determines which contacts the person can access. Read permissions do not automatically allow creation, editing or deletion.
Options vary by feature. Every permission does not offer every scope. The meaning of “own” also depends on the entity.
Review a role
- Open Roles and Permissions and select a role.
- Review enabled modules and actions.
- Check scopes and dependencies shown by the editor.
- Editing a custom role requires
roles.update. Save and check a specific case with an affected person.
Conversation access
Viewing a conversation, claiming an unassigned conversation and taking one from AI are different actions. Assignment protection can also restrict who changes the assignee.Diagnose missing access
Check, in order: active organization, enabled module, assigned role, permitted action and scope. If the scope uses teams, check current team membership.Frequently asked questions
Why do two people with the same role see different records?
Why do two people with the same role see different records?
Team scopes are resolved per person. Users with the same role can belong to different teams and see different records.
Does being a team leader make me an administrator?
Does being a team leader make me an administrator?
No. Team membership or leadership does not replace the individual role. See Teams.
Does granting add-on permissions enable the add-on?
Does granting add-on permissions enable the add-on?
No. The organization must also have that module enabled. Contact support if it is unavailable.
