Skip to content
Open App

Roles and authorizations

Roles

RoleInternalDescription
OwnerownerCreator of the Workspace; full access, including billing and Workspace deletion
AdminadminManages sources, channels, tags, team, and AI settings
MembermemberCan rate the Inbox and generate AI reports
ReaderreaderCan only read and view completed AI reports

Permissions Matrix

PermissionReaderMemberAdminOwner
read:updates — Read updates
read:sources — View sources and channels
read:reports — Read reports
read:team — View team
write:Inbox — Rate Inbox (Save/Discard)
generate:reports — Generate AI reports
write:sources — Create, edit, delete sources
write:channels — Create, edit, and delete channels
manage:team — Invite, edit, and remove team members
manage:ai-settings — AI context, scheduled reports, Buffer
manage:billing — Plan, subscription, invoices
Delete Workspace

The agency owner

The agency is not a fifth role in the Workspace. The Agency area is open to whoever owns at least two Workspaces of their own or already runs an agency — regardless of the role they hold in any single Workspace.

WhatWho may do it
Create the agency, assign Workspaces, dissolve the agencyAgency owner
Remove a Workspace from the agencyAgency owner, and the admin or owner of that Workspace
Brand and dossier CTAs of the agencyAgency owner
View and change a Workspace’s brand settingsAdmin and owner
Change plan and thereby unlock white-labelowner only

API Token Roles

API tokens have their own role, which is independent of the user role:

Token RoleCorresponds to permissions of
readerReader
memberMember
adminAdmin
ownerOwner

OAuth Connections (Claude.ai, ChatGPT)

OAuth connections have two scopes:

ScopeAllows
Read-onlyRetrieve updates, sources, reports, and team context
Read and writeAdditionally create, edit, and delete sources, channels, and tags