Permissions and roles
How the gate decides who can do what in each brand.
On this page
Updated on January 1, 1970
Privacy and analytics
We use necessary technical cookies and, only with your consent, analytics and marketing pixels to improve the website and measure campaigns.
How the gate decides who can do what in each brand.
Updated on January 1, 1970
Every call goes through the same gate, whether it comes from Nödo, an external agent or a key. The gate answers four questions in this order.
| Role | What it can do |
|---|---|
| Owner | Everything, including deleting the brand. |
| Admin | Everything except deleting the brand. |
| Member | View and create content, works and calendar; view the Kit. |
| Viewer | View content, Kit and calendar. |
| Billing | View plan, billing, orders and subscriptions. |
| Area | Read | Write |
|---|---|---|
| Brand | Viewer | Admin |
| Genome | Viewer | Member |
| Brand Kit | Viewer | Admin |
| Library | Viewer | Admin |
| Works | Viewer | Member |
| Calendar | Viewer | Member |
| Connections | Admin | Admin |
| Publishing | Viewer | Member |
| Inbox | Viewer | Viewer |
| Team | Viewer | Member |
| Conversation | Viewer | Read-only |
| Memory | Viewer | Member |
| Questions | Viewer | Member |
| Media | — | Member |
| Store | Viewer | Read-only |
| Plan | Billing | Read-only |
| Orders | Billing | Read-only |
| Activity | Viewer | Read-only |
Scopes are per area and kind: <area>.read and <area>.write. Ask only for what you need; when one is missing, insufficient_scope names it.
brand.read
brand.write
genome.read
genome.write
kit.read
kit.write
library.read
library.write
works.read
works.write
calendar.read
calendar.write
connections.read
connections.write
publishing.read
publishing.write
inbox.read
inbox.write
team.read
team.write
conversation.read
memory.read
memory.write
questions.read
questions.write
media.write
store.read
subscriptions.read
orders.read
activity.read