The permission catalogue
Application permissions are organised into areas, each covering one part of the platform. Within an area, permissions come in tiers — typically View, Manage, and Admin — that build on each other. This page lists every area and what its permissions grant. You’ll see these exact areas and permissions on the Permissions screen, where you grant them to user groups.Identity & access
Who can manage users, groups, and the permissions themselves.Document structure
Who can configure document types, document type groups, keyword assignments, and document access rights. See Document types.Keyword configuration
Who can configure keyword types, keyword type groups, and autofill keyword sets. See Keyword types.Client settings
Who can configure platform behaviour for upload, keywords, and shared searches.
In each pair, Manage includes everything View grants.
Retention
Who can run and govern the retention and deletion features. This area has the most permissions, covering policies, document actions, approvals, legal holds, simulation, quarantine, and reports.
The retention permissions are described in context in the Retention & deletion section.
Where to read next
Managing permissions
Grant and revoke these permissions for user groups on the Permissions screen.
The access model
How application permissions fit alongside document access rights and security keywords.
