Skip to main content

Access control

Project access comes from direct user membership or membership in a team linked to the project. Team or user visibility alone does not grant project access.

Owners manage project access from Project settings → Access. The page shows your effective access, member and team counts, each assigned role, and controls to add a user or team as a VIEWER, EDITOR, or OWNER.

Project settings Access tab showing project roles and member access
Project access is explicit: members and linked teams each receive a project role.

Platform roles

RoleAccess
USERAccess projects assigned to the user or their teams.
ADMINManage users and teams; open Administration pages.
SUPERADMINFull platform access, including all projects and Administration pages.

Admins and superadmins can open Audit Logs and AI Analytics. An admin does not automatically become a member of every project.

Project roles

RoleAccess
VIEWERRead project records and history.
EDITORCreate and edit work items, entries, and relationships.
OWNERManage project access and settings, in addition to editor access.

Projects always require at least one owner. A team inherits the project role assigned to it, and its members inherit that project access.

Team roles

RoleAccess
TEAM_MEMBERBelong to the team and inherit its project access.
TEAM_OWNERReview and decide join requests.

Administrators manage team records, membership, and project links. Team ownership does not replace a project role.