Permission Matrix

2 min read

The full grid — grouped the way it appears in the interface.

Overview

Permissions are granular by design. Rather than one switch per module, each action is separately controlled, which is what lets you give someone edit access without delete, or view an order without seeing its value.

Permission Groups

Orders
Open, assign, add, edit, delete, change status, notes, project data, tasks, tags, message client, create invoice/ticket, bulk, export, history, view amount, view client email
Tickets
Open, assigned, all, add, edit, delete, status, notes, tags, client messages, team messages, bulk, export, history, view client email
Clients
View, add, edit, delete, assign, merge, status, notes, balance, bulk, import, export, plus separate view permissions for email, balance, activity, total spent, address, orders, invoices, tickets, and sign-in-as
Invoices
All, add, edit, delete, status, refund, send email, duplicate, download, payment link, edit address, bulk, export, history, view amount, view client email
Communication
Team messaging and chat — send, create channel, start direct, manage channels and messages, upload; plus live chat send, manage, and start conversation
Team & remote roster
Add, edit, delete, notes, reset password, welcome email, history, sign-in-as, bulk, view email — separately for team and remote members
Task assign (work board)
Work assign, add, edit, delete work items, change status, manage files, view task status, bulk
Services, forms & coupons
Add, edit, delete, folders, intake forms, bulk, import, export services; form add, edit, delete, status, rules; coupon add, edit, delete, status, bulk
To-Do & items
List-level view, create, edit, assign, delete, complete — and separate item-level create, edit, delete, status
Reports
One permission per report tab
Visibility permissions: the view-only permissions matter most — order amount, client email, balance, and total spent can each be hidden while leaving the record usable.

Tips & Best Practices

i

Read the grid top to bottom once when you first set up. Knowing that “view order amount” is its own permission saves you building an awkward workaround later.