Project Roles in the company settings

Company Admin
Company Settings
Project
Page description

On the Project Roles page you define company-wide role templates with precisely configured read and write permissions. These roles are strictly templates. They get applied once when an employee or contact is added to a project, not continuously synced with people already assigned.

Who can see and edit this page

Only company admins can create, edit or delete roles, or change their permissions — this check is additionally enforced on the server and can't be bypassed. Without admin rights you only see the overview in a read-only state.

Layout of the view

Instead of a classic table, you see a matrix: the first column lists the individual permissions, and the further columns are the roles. If not all roles fit on screen, you page horizontally through the columns using the arrow icons on the left/right. There is no column-settings menu here to show/hide or sort columns like in other tables in the app — the order is fixed: the four default roles first, then your own roles by creation date.

Default roles

Four fixed base roles are always available and can be neither renamed, deleted, nor changed in their permissions:

  • Project manager - all permissions enabled

  • Collaborator - typical employee permissions

  • Subcontractor - heavily restricted (e.g. create ticket, change status, read team)

  • Watcher - read-only permissions, no write permissions

A € icon next to the name shows via tooltip whether a role is free to use in your current plan (subcontractor and watcher are) or requires a paid plan.

Creating your own role

The round plus button in the bottom right opens the create dialog. You give it a unique name (must not collide with a default role's name) and choose one of the three base roles (project manager, collaborator, subcontractor) as a starting point. The new role initially takes on exactly that base role's permissions. You can then adjust them freely.

Editing your own role

The "⋮" menu of a role you created yourself lets you rename it. This editing option only exists for your own roles derived from a base role. For the four default roles, only the member/contact assignment is available in the menu.

Changing permissions

In the matrix you toggle individual permissions on or off per own role using switches. There are read permissions (plans, tickets, journals, team, project settings) as well as finely grained write permissions in the categories plans, tickets, team, files, project and time tracking for example create ticket, change ticket status/title/type, add watchers, invite/remove users, release approvals, and many more individual permissions.

Two special cases: if you enable the "change all tickets" permission, all underlying individual ticket permissions are automatically shown as enabled and can no longer be toggled off individually. If you enable "change ticket type", you can additionally select which specific ticket types this permission applies to (empty/all selected means no restriction).

Important - a template only, no live sync: a role is a pure template. If you change its permissions, this affects only people who are newly added to a project with this role from now on. Employees or contacts who were already added to a project with this role beforehand keep the permissions they were given at the time of assignment unchanged. Their project-specific role is not automatically updated by a later change to the template. If you want to adjust the permissions of already-assigned members, you need to do that directly within the respective project's own team management.

Deleting a role

The "⋮" menu of your own role lets you delete it after a confirmation prompt. If the role is still assigned to at least one employee or contact, deletion is initially refused; instead you're given the option to explicitly force the deletion. If you confirm, all affected people completely lose their role assignment (they then have no project role until you manually assign them a new one), and only then is the role itself removed. Default roles can never be deleted.

Assigning an employee or contact

"Select employee or contact" in the "⋮" menu of any role (including default roles) opens a multi-select with your company's employees and external contacts. Here you decide who this role is assigned to as a template. This assignment by itself doesn't yet determine the actual permissions in a running project — it only takes effect once that person is actually added to a project; at that point, the role's current permissions are copied once as the starting point for that person's project-specific role.

Was this article helpful?

No upmesh account yet?

Try upmesh for free: construction documentation, defects, plans and site diary in one app — in the browser, on your phone and offline.