What can each role do?
Your permissions are determined by your assigned role(s) and the account scope. For detailed, role-by-role capabilities, see User role permission availability matrix .
How RBAC works in this system
- Roles grant specific permissions based on the principle of least privilege.
- Scope: Within your assigned role, you can view and act on your own account and its child accounts in the account hierarchy. Parent or sibling accounts are not included.
Role types
- Fleet Manager: Can perform almost all operations within their account, including creating new accounts and managing reports.
- Admin: Full access to manage users, devices, and data within their assigned account and child accounts.
- User: Read-only access, including reports and list of devices; cannot make changes except for your own configurations.
Requesting changes
If you need additional access or a different role, contact your organization administrator. They can adjust your role assignments or scope as allowed by policy.