User Access Types & Permissions
Breakdown of "what users can do" across DORAedge
Access Types
When both creating the DORAedge tenant for your organization and adding new users to the workspace, an Access type is assigned to each user. Access type assignments determine what permissions users have across the app.
Available Access Types
Owner: The user who created the DORAedge workspace, and they have full access to records across the app. The Owner is the only workspace user who has access to the Billing page, which is accessible by clicking on their name on the bottom left of the side bar.
Administrator: Full access with the ability to create, update, and archive all records.
Editor: Full access with the ability to create, update, and archive all records.
Viewer: View only access to all records.
Permissions across DORAedge
The table below outlines the various record types and permissions available by user access type.
Legend:
Manage: Can Create, Update, and Archive all records
Read only: Can only view all records
Record Types
Owner
Admin
Editor
Viewer
ICT Network: Entities
Manage all
Manage all
Manage all
Read only
ICT Network: Branches
Manage all
Manage all
Manage all
Read only
ICT Network: Functions
Manage all
Manage all
Manage all
Read only
ICT Network: Providers
Manage all
Manage all
Manage all
Read only
ICT Network: ICT Assets
Manage all
Manage all
Manage all
Read only
ICT Network: Contracts
Manage all
Manage all
Manage all
Read only
Compliance: Policies & Controls
Manage all
Manage all
Manage all
Read only
Compliance: Risks
Manage all
Manage all
Manage all
Read only
Compliance: Incidents
Manage all
Manage all
Manage all
Read only
Export: Register of Information
Manage all
Manage all
Manage all
Can only download previously generated reports
Export: Network Data
Manage all
Manage all
Manage all
Read only
Team: User Profiles
See below
See below
See below
See below
Teams Page
An overview of assigned Access types across your organization's workspace is viewable on the Teams page.
Access Type Assignments & Permissions
The table below outlines permissions related to user accounts and profile information.
Summary:
Owner: Highest level of access. Full control over user profile information.
Administrator: Can manage users and edit most profile information.
Editor: Read-only access to other users’ details. Can update their own profile information.
Viewer: Read-only access to other users’ details. Can update their own profile information.
Legend:
✅: Has permission
❌: Does not have permission
🔒: Not applicable
Permission
Owner
Admin
Editor
Viewer
Edit own name
✅
✅
✅
✅
Edit own email address*
🔒
🔒
🔒
🔒
Edit own phone number
✅
✅
✅
✅
Edit own job title
✅
✅
✅
✅
Change own access type
❌
❌
❌
❌
Edit another user’s name
❌
❌
❌
❌
Edit another user’s email address*
🔒
🔒
🔒
🔒
Edit another user’s phone number
✅
✅
❌
❌
Edit another user’s job title
✅
✅
❌
❌
Change another user’s access type
✅ **
✅
❌
❌
Invite users to the team (via email)
✅
✅
❌
❌
Resend invite
✅
✅
❌
❌
Remove users from the team
✅
✅
❌
❌
Notes:
*Email Address cannot be changed after workspace creation or invitation.
**Owner Access type is established upon DORAedge tenant creation and cannot currently be transferred to other users in the workspace.
Last updated