Skip to main content

The permission catalogue

Application permissions are organised into areas, each covering one part of the platform. Within an area, permissions come in tiers — typically View, Manage, and Admin — that build on each other. This page lists every area and what its permissions grant. You’ll see these exact areas and permissions on the Permissions screen, where you grant them to user groups.

Identity & access

Who can manage users, groups, and the permissions themselves.

Document structure

Who can configure document types, document type groups, keyword assignments, and document access rights. See Document types.

Keyword configuration

Who can configure keyword types, keyword type groups, and autofill keyword sets. See Keyword types.

Client settings

Who can configure platform behaviour for upload, keywords, and shared searches. In each pair, Manage includes everything View grants.

Retention

Who can run and govern the retention and deletion features. This area has the most permissions, covering policies, document actions, approvals, legal holds, simulation, quarantine, and reports. The retention permissions are described in context in the Retention & deletion section.

Managing permissions

Grant and revoke these permissions for user groups on the Permissions screen.

The access model

How application permissions fit alongside document access rights and security keywords.