Super Admin
ROLE PERMISSIONS
Who can do what
Workspace permissions are independent of the Super Admin’s platform-wide controls.
Super Admin
Workspace permission matrix
Owners and admins cover the workspace. Other roles are limited to assigned apps.
Default role model| Capability | Owner | Admin | Developer | Editor | Viewer |
|---|
| View apps & previewsOpen apps assigned to the member. | | | Assigned | Assigned | Assigned |
|---|
| Edit design & contentChange the app’s presentation and content. | | | Assigned | Assigned | — |
|---|
| Prepare app buildsConfigure and queue builds for assigned apps. | | | Assigned | — | — |
|---|
| Approve publishingApprove releases to distribution channels. | | | — | — | — |
|---|
| Configure integrationsManage approved connections without exposing stored secrets. | | | Assigned | — | — |
|---|
| Manage team accessInvite members and update permitted roles. | | | — | — | — |
|---|
| Manage billing & planControl the customer’s subscription and invoices. | | — | — | — | — |
|---|
| Manage workspaceUpdate shared workspace preferences. | | | — | — | — |
|---|
“Assigned” means selected apps only. Admins can manage Developer, Editor, and Viewer memberships—not ownership or peer admins.
OwnerOwns the customer workspace, billing, and administrator access.
AdminRuns the workspace and team. Cannot change ownership or billing.
DeveloperWorks on assigned apps, integrations, and builds. No publishing by default.
EditorUpdates the design and content of assigned apps.
ViewerReviews assigned apps without making changes.