Overview
The user role permissions are the top layer of permissions that can be applied to user profiles in Quantive. To put it simply: you’re allowed to create a set of custom roles, grant specific permissions to these roles, and then assign roles to specific user groups. For example, you can design a “team manager” role that allows them to manage teams to a certain level - managers could be granted privileges to handle existing teams, without the possibility of creating new ones and altering the organizational chart. With user role permissions, you can provide access to the requisite features, ensuring an optimal level of control.
Where can you find the user role permissions?
User roles permissions can be found under the 'Manage roles" section in the account Settings.
They are primarily used when you need to introduce new permissions set or edit an existing one - to grant or revoke permissions.
Understand user role permissions
This section provides detailed description of every permissions, including potential correlations. Use it as a handy reference anytime you need to dive deep in permission’s specifics.
Some notable points about the permissions modal:
Permissions are divided into 3 main tabs according to their area of relevance within the Quantive systems.
Every feature has access and manage permissions, grouped into a collapsible widget. If you select any of the management options, the access permission toggle is switched ON automatically. If you switch OFF the access permission, the selected manage permissions with be unselected.
Create and Edit permissions are automatically selected together. However, you can enable Edit alone if needed.
There are cases where a relation between permissions exists. This interrelation is not mandatory and will results in limited abilities on certain actions. In such cases, an info message will be displayed, informing you of the correlation.
Keep in mind that user role permissions form the top layer of control. Individual permissions can be further narrowed through granular (on attribute) and ownership level permissions.
Results permissions
Access OKRs
Access OKRs
Allows users to view OKRs and sessions, but not own, create, edit, or update them. Users can also view and create OKR reports. This only applies to OKRs within sessions visible to the user.
Manage OKRs
Manage OKRs
Allows users to own, create, edit, update and delete OKRs. This only applies within sessions shared to the user.
You can allow only particular actions to users using the additional options below.
Own
Allows users to own Objectives and Key Results.Update
Allows users to update Key Results."Own" permission will be selected automatically.
Edit and delete own updates
Allows users to edit or delete the Key Result updates they have created.
"Own" and "Update" will be selected automatically.Edit
Allows users to edit existing Objectives and Key Results.Create
Allows users to create Objectives and Key Results.Delete
Allows users delete Objectives and Key Results.
Manage Key Results updates
Allows users to edit and delete any manually created Key Results updates.Access private OKRs
Allow users to view private OKRs. This only applies to OKRs within sessions visible to the user.
Manage sessions
Manage sessions
Allows users to create, edit, and delete sessions.
You can allow only particular actions to users using the additional options below.
Edit
Allows users to edit existing sessions. This only applies to sessions the user has manage permissions to.Create
Allows users to create new sessions.
"Edit" permission will be selected automatically.Delete
Allows users to delete sessions. This only applies to sessions the user has manage permissions to.
Create tags
Create tags
Allow users to create tags.
Only users with "Manage account setup" permissions will be able to edit, delete, and merge tags for the account.
Manage tasks
Manage tasks
Allows users to own, assign, create, edit, and delete tasks.
Manage Whiteboards
Manage Whiteboards
Allows users to create, edit, and delete Whiteboards.
Manage whiteboard templates
Allows users to create, edit, and delete Whiteboards templates.
Access KPIs
Access KPIs
Allows users to access KPIs, but not create, edit, update, or delete them.
Manage KPIs
Allows users to create, edit, update, and delete KPIs and KPI groups.
Access Insightboards
Access Insightboards
Allows users to access Insightboards. Users will only be able to edit, filter, and delete Insightboards if permissions are granted for a specific Insightboard.
Manage Data
Allows users to create, edit, and delete automations, data sources, Insights, Insightboards and their parameters. Users will also be able to automate Key Results and KPIs, as well as view Process, Performance, and Aggregated OKR reports.Access Reports and Insightboard parameters
Allows users to filter Insightboards with data source-based parameters. Users will also be able to view Process, Performance, and Aggregated OKR reports.
Access People
Access People
Allows users to view Employees, Teams, and Organization. Users can also create employee and team-based reports.
Manage Teams
Manage Teams
Allows users to create and edit teams, add and remove members and managers, activate and deactivate teams, delete teams, and manage team Check-ins.
You can allow only particular actions to users using the additional options below.
Edit team details
Allows users to edit teams details like name, avatar, description and custom fields.Edit team members
Allows users to add and remove team members and managers.Create teams
Allows users to create and edit teams.
"Edit team details" and "Edit team members" will be selected automatically.Activate and deactivate teams
Allows users to activate and deactivated teams.Delete teams
Allows users to delete teams.Manage Check-ins
Allows users to enable, disable, schedule, and manage team Check-ins.
Award badges
Allows users to award badges. Badges will need to be approved by someone with “Manage badges” permissions.
Manage badges
Allows users to create, edit, award, approve, reject, and delete badges.
StrategyAI permissions
Access Strategies
Access Strategies
Allows user to create a plan for the company strategy and turn it to actionable OKRs
Access Strategies Settings
Allows users to access Settings section in Strategies and invite users
Access Discoveries
Access Discoveries
Allows user to chat with virtual data analyst and find insights from the organizational data
Access Signals
Access Signals
Allow users to generate reports and see how effort is distributed across focus areas.
Account permissions
Access Users
Access Users
Allows user to access Users sections in Settings
Manage Users
Manage Users
Allows user to invite, edit, activate, deactivate and delete users.
You can allow only particular actions to users using the additional options below
Edit user details
Allows user to change user's names, picture and custom fields.Invite
Allows user to invite users to Quantive.
Edit user details permission will be selected automatically.
"Edit team members" permission needed in order to assign teams.Edit users roles
Allows user to change the user's role upon invitation or when editing userEdit users license
Allow user to change the user's license upon invitation or when editing userActivate and deactivate
Allows user to activate and deactivate usersDelete
Allow users to delete users
Manage Roles
Manage Roles
Allows user to create, edit and delete permission roles.
You can allow only particular actions to users using the additional options below
Edit
Allows user to edit the title, description and change permissions in existing custom rolesCreate
Allows user to create new custom roles.
Edit permission will be selected automatically.Delete
Allows user to delete roles.
Manage user provisioning
Manage user provisioning
Allows user to manage Single-sign on, Group to roles mapping and SCIM provisioning for the account.
You can allow only particular actions to users using the additional options below
SCIM and role mapping
Allows user to manage the SCIM provisioning options.
You will need "Manage API tokens" in order to initiate the SCIM integrationSSO and role mapping
Allows user to enable/disable SSO connection and manage groups to role mapping for the user provisioning
Manage Account setup
Manage Account setup
Allows user to access and manage settings related to the account setup.
You can allow only particular actions to users using the additional options below.
Manage account notifications
Allows users to manage account-level notifications. Personal user notification settings can override these settings.Manage apps
Allows users to add, manage and build apps through the MarketplaceManage API tokens
Allows users to view, create, and revoke API tokens on behalf of the interacting user. Only admins can manage tokens for all users.Manage Billing
Allows users to manage the account subscription and billing.Activity History
Allows users to view the activity of all users in the account.
Conclusion
Finally when you’re done creating your new role or editing your existing role - don’t forget to click Save - and you’re good to go and assign this role to users.