Role Management¶
If you need to set different TrueWatch access permissions for employees in your enterprise to achieve permission isolation among different employees, you can use the role management feature of TrueWatch. Role Management provides users with an intuitive permission management entry, supporting the free adjustment of permission scopes for different roles, creating new roles for users, and assigning permission scopes to roles, meeting the permission needs of different users.
Roles¶
Default Roles¶
If different teams in your enterprise need to view and operate different TrueWatch Features, and need to distinguish role permissions, you can invite members to join the current workspace and set role permissions for them to control the TrueWatch Features they can access and operate.
TrueWatch provides four default member roles and has renamed the default roles as shown in the following table:
Old Role Name | New Role Name |
---|---|
Owner | Owner |
Administrator | Administrator |
Standard | Standard |
Read-only | Read-only |
Note: Default roles cannot be deleted, and their permission scopes cannot be changed.
Permission Description¶
For the permission scopes of different default roles, refer to the document Permission List.
Role | Description |
---|---|
Owner | The owner of the current workspace, has all operation permissions within the workspace, supports adjusting role permissions of other members. If the granted role permissions include "Token View," an authorization review process will be initiated. For details, refer to Permission Change Review. Note: |
Administrator | The administrator of the current workspace, has read and write permissions for the workspace, and supports adjusting role permissions of other members except the Owner. |
Standard | The standard member of the current workspace, has read and write permissions for the workspace. |
Read-only | The read-only member of the current workspace, can only view data in the workspace, without write permissions. |
Custom Roles¶
In addition to default roles, TrueWatch supports creating new roles in role management and assigning permission scopes to roles to meet the permission needs of different users.
In the TrueWatch workspace Manage > Role Management, you can create a new role.
For the permission scopes of custom roles, refer to Permission List.
Note: Only Owner and Administrator can create custom roles.
Modify/Delete/Clone Roles¶
You can perform the following operations on custom roles:
-
Click the Edit button to adjust the permissions of the role;
-
Click , if the role is not associated with any member account, it can be deleted;
-
Click , you can clone an existing role to create a new role;
- Based on the permissions of the existing role, cloning the role can reduce the number of steps, quickly add or remove permissions, and create a role.
Role Details Page¶
Click any custom role to view the role details, including the role name, creation/update time, creator/updater, description, and role permissions. You can click the Edit button on the right side of the role to modify the role permissions.
Permission Change Review¶
When setting role permissions for workspace members, if the granted role permissions include "Token View," a verification message will be sent to the TrueWatch Billing Center to initiate a permission change review process:
- If the Billing Center accepts the verification, the permission change is successful;
- If the Billing Center rejects the verification, the permission change fails, and the original role permissions are maintained;
- If the Billing Center does not review, you can modify the role for the member. After successful modification, the original permission change review request becomes invalid.
For more details on permissions, refer to Permission List.
Warning
- Currently, only Owner and Administrator have "Token View" permissions. If a Commercial Plan workspace member needs to be promoted to Administrator, it needs to be reviewed by the TrueWatch Billing Center;
- Free Plan workspace members can be directly promoted to Administrator without review by the TrueWatch Billing Center.
Example of Promoting to Administrator in Commercial Plan¶
In the TrueWatch workspace Manage > Member Management, select the member who needs to be promoted to Administrator, click the Edit button on the right, in the pop-up dialog, select Administrator for the role, and click OK.
Note: TrueWatch only supports Owner and Administrator roles to grant Administrator permissions to current workspace members. Only the Owner role can review and approve Administrator permissions in the Billing Center.
- If you are the Administrator role of the current workspace, when promoting a member, you need to notify the TrueWatch Billing Center administrator to log in to the Billing Center for operation;
- If you are the Owner role of the current workspace, you can directly click Go to Billing Center Review to operate in the TrueWatch Billing Center without logging in.
In the message center of the TrueWatch Billing Center, click Accept:
In the Operation Confirmation dialog, click OK:
You can see that the promotion request has been accepted:
Return to the TrueWatch workspace member management, and you can see that the workspace member has been promoted to Administrator:
TrueWatch supports viewing all members who have not been approved for the Administrator role in the member management list. Click the icon on the right side of the member role, and you can click Billing Center in the prompt dialog for review operation.
Note: Only the Owner role can review and approve Administrator permissions for current workspace members.
Permission List¶
TrueWatch supports setting permissions for custom roles within the workspace to meet the permission needs of different users.
For more details, refer to the document Permission List.
Note: Currently, permissions are only set for functional operations within the workspace.