Skip to main content
All CollectionsAdmin Guide: Account Setup and ConfigurationRoles & Permissions Setup
Custom User Role Permissions - Everything you need to know.
Custom User Role Permissions - Everything you need to know.

Understand how user role permissions are designed in Quantive Results and use them to grant or restrict user access to specific features.

S
Written by Sonya Vrabcheva
Updated over a week ago

Overview

The user role permissions are the top layer of permissions that can be applied to user profiles in Quantive. To put it simply: you’re allowed to create a set of custom roles, grant specific permissions to these roles, and then assign roles to specific user groups. For example, you can design a “team manager” role that allows them to manage teams to a certain level - managers could be granted privileges to handle existing teams, without the possibility of creating new ones and altering the organizational chart. With user role permissions, you can provide access to the requisite features, ensuring an optimal level of control.

Where can you find the user role permissions?

User roles permissions can be found under the 'Manage roles" section in the account Settings.

They are primarily used when you need to introduce new permissions set or edit an existing one - to grant or revoke permissions.

image.png

Understand user role permissions

This section provides detailed description of every permissions, including potential correlations. Use it as a handy reference anytime you need to dive deep in permission’s specifics.

Some notable points about the permissions modal:

  • Permissions are divided into 3 main tabs according to their area of relevance within the Quantive systems.

  • Every feature has access and manage permissions, grouped into a collapsible widget. If you select any of the management options, the access permission toggle is switched ON automatically. If you switch OFF the access permission, the selected manage permissions with be unselected.

  • Create and Edit permissions are automatically selected together. However, you can enable Edit alone if needed.

  • There are cases where a relation between permissions exists. This interrelation is not mandatory and will results in limited abilities on certain actions. In such cases, an info message will be displayed, informing you of the correlation.

Keep in mind that user role permissions form the top layer of control. Individual permissions can be further narrowed through granular (on attribute) and ownership level permissions.

Results permissions

Access OKRs

Allows users to view OKRs and sessions, but not own, create, edit, or update them. Users can also view and create OKR reports. This only applies to OKRs within sessions visible to the user.

  • Manage OKRs
    Allows users to own, create, edit, update, and delete OKRs. This only applies to OKRs within sessions visible to the user.

  • Access private OKRs
    Allow users to view private OKRs. This only applies to OKRs within sessions visible to the user.

  • Manage Sessions
    Allows users to create, edit, and delete sessions.

Create tags

Allow users to create tags.
Only users with "Manage account setup" permissions will be able to edit, delete, and merge tags for the account.

Manage tasks

Allows users to own, assign, create, edit, and delete tasks.

Manage Whiteboards

Allows users to create, edit, and delete Whiteboards.

  • Manage whiteboard templates
    Allows users to create, edit, and delete Whiteboards templates.

Access KPIs

Allows users to access KPIs, but not create, edit, update, or delete them.

  • Manage KPIs
    Allows users to create, edit, update, and delete KPIs and KPI groups.

Access Insightboards

Allows users to access Insightboards. Users will only be able to edit, filter, and delete Insightboards if permissions are granted for a specific Insightboard.

  • Manage Data
    Allows users to create, edit, and delete automations, data sources, Insights, Insightboards and their parameters. Users will also be able to automate Key Results and KPIs, as well as view Process, Performance, and Aggregated OKR reports.

  • Access Reports and Insightboard parameters
    Allows users to filter Insightboards with data source-based parameters. Users will also be able to view Process, Performance, and Aggregated OKR reports.

Access People

Allows users to view Employees, Teams, and Organization. Users can also create employee and team-based reports.

Manage Teams

Allows users to create and edit teams, add and remove members and managers, activate and deactivate teams, delete teams, and manage team Check-ins.

You can allow only particular actions to users using the additional options below.

  • Edit team details
    Allows users to edit teams details like name, avatar, description and custom fields.

  • Edit team members
    Allows users to add and remove team members and managers

  • Create teams
    Allows users to create and edit teams.
    "Edit team details" and "Edit team members" will be selected automatically

  • Activate and deactivate teams
    Allows users to activate and deactivated teams

  • Delete teams
    Allows users to delete teams.

  • Manage Check-ins
    Allows users to enable, disable, schedule, and manage team Check-ins.

  • Award badges
    Allows users to award badges. Badges will need to be approved by someone with “Manage badges” permissions.

  • Manage badges
    Allows users to create, edit, award, approve, reject, and delete badges.

StrategyAI permissions

Access Strategies

Allows user to create a plan for the company strategy and turn it to actionable OKRs

  • Access Strategies Settings
    Allows users to access Settings section in Strategies and invite users

Access Discoveries

Allows user to chat with virtual data analyst and find insights from the organizational data

Access Signals

Allow users to generate reports and see how effort is distributed across focus areas.

Account permissions

Access Users

Allows user to access Users sections in Settings

Manage Users

Allows user to invite, edit, activate, deactivate and delete users.

You can allow only particular actions to users using the additional options below

  • Edit user details
    Allows user to change user's names, picture and custom fields.

  • Invite
    Allows user to invite users to Quantive.
    Edit user details permission will be selected automatically.
    "Edit team members" permission needed in order to assign teams.

  • Edit users roles
    Allows user to change the user's role upon invitation or when editing user

  • Edit users license
    Allow user to change the user's license upon invitation or when editing user

  • Activate and deactivate
    Allows user to activate and deactivate users

  • Delete
    Allow users to delete users

Manage Roles

Allows user to create, edit and delete permission roles.

You can allow only particular actions to users using the additional options below

  • Edit
    Allows user to edit the title, description and change permissions in existing custom roles

  • Create
    Allows user to create new custom roles.
    Edit permission will be selected automatically.

  • Delete
    Allows user to delete roles.

Manage user provisioning

Allows user to manage Single-sign on, Group to roles mapping and SCIM provisioning for the account.

You can allow only particular actions to users using the additional options below

  • SCIM and role mapping
    Allows user to manage the SCIM provisioning options.
    You will need "Manage API tokens" in order to initiate the SCIM integration

  • SSO and role mapping
    Allows user to enable/disable SSO connection and manage groups to role mapping for the user provisioning

Manage Account setup

Allows user to access and manage settings related to the account setup.

You can allow only particular actions to users using the additional options below.

  • Manage account notifications
    Allows users to manage account-level notifications. Personal user notification settings can override these settings.

  • Manage apps
    Allows users to add, manage and build apps through the Marketplace

  • Manage API tokens
    Allows users to view, create, and revoke API tokens on behalf of the interacting user. Only admins can manage tokens for all users.

  • Manage Billing
    Allows users to manage the account subscription and billing.

Conclusion

Finally when you’re done creating your new role or editing your existing role - don’t forget to click Save - and you’re good to go and assign this role to users.

Did this answer your question?