---
title: "Role permissions"
canonical: "https://docs.devo.com/space/latest/94763681/Role%20permissions"
format: markdown
---
> Macro (toc)

The following sections list all the role permissions available in the Devo Platform, classified under the set categories. Each permission includes **View** and **Manage** levels to better define the actions that a custom role can perform. Read [Managing roles](https://devodocs.atlassian.net/wiki/spaces/latest/pages/94763386) to learn more about assigning permissions to custom roles.

Remember that the Admin and Owner roles grant all the permissions, while the No Privileges role is limited to modifying their own settings, receiving alerts, using custom finders, and other general actions.

## Activeboard report scheduler

|  |  |  |
| --- | --- | --- |
| > [Permission]
> 
> *[Activeboard report scheduler](https://devodocs.atlassian.net/wiki/spaces/latest/pages/248381467)* | > [View]
> 
> Allows the user to see which Activeboards have a scheduled report, as well as use the dedicated filter to find them | > [Manage]
> 
> Allows the user to create, edit or delete scheduled reports from Activeboards |

## Alerts

### Alert configuration

|  |  |  |
| --- | --- | --- |
| > [Permission]
> 
> *[Alert configuration](https://devodocs.atlassian.net/wiki/spaces/latest/pages/529170511)*<br>> ℹ️ **Group permission**
> ℹ️ 
> ℹ️ Granting this permission does not imply granting the permissions below. | > [View]
> 
> Grants the user view-only access to the **Administration →** **Alert Configuration** area | > [Manage]
> 
> Allows the user to view, create, modify and delete alert definitions in **Administration → Alert Configuration**. The user can also define new alerts after running a search. For domains in multitenant structures, user can [share alert rules with child domains](https://devodocs.atlassian.net/wiki/spaces/latest/pages/1333526603). |
|  | > [Permission]
> 
> *[Email delivery methods](https://devodocs.atlassian.net/wiki/spaces/latest/pages/95127270)*
> 
> *[HTTP-JSON delivery methods](https://devodocs.atlassian.net/wiki/spaces/latest/pages/95127270)*
> 
> *[Jira delivery methods](https://devodocs.atlassian.net/wiki/spaces/latest/pages/95127270)*
> 
> *[Pagerduty delivery methods](https://devodocs.atlassian.net/wiki/spaces/latest/pages/95127270)*
> 
> *[Pushover delivery methods](https://devodocs.atlassian.net/wiki/spaces/latest/pages/95127270)*
> 
> *[Service Desk delivery methods](https://devodocs.atlassian.net/wiki/spaces/latest/pages/95127270)*
> 
> *[ServiceNow delivery methods](https://devodocs.atlassian.net/wiki/spaces/latest/pages/95127270)*
> 
> *[Slack delivery methods](https://devodocs.atlassian.net/wiki/spaces/latest/pages/95127270)* | > [View]
> 
> Grants the user view-only access to the Email / HTTP-JSON / Jira / Pagerduty / Pushover / Service Desk / ServiceNow / Slack tab in **Administration → Alert configuration → Delivery Methods** | > [Manage]
> 
> Grants the user access to the Email / HTTP-JSON / Jira / Pagerduty / Pushover / Service Desk / ServiceNow / Slack tab in **Administration → Alert configuration → Delivery Methods**, and the ability to view and create new Email / HTTP-JSON / Jira / Pagerduty / Pushover / Service Desk / ServiceNow / Slack delivery methods |

### Triggered alerts

|  |  |  |
| --- | --- | --- |
| > [Permission]
> 
> *[Triggered alerts](https://devodocs.atlassian.net/wiki/spaces/latest/pages/405700609)*<br>> ℹ️ **Group permission**
> ℹ️ 
> ℹ️ Granting this permission does not imply granting the permissions below. | > [View]
> 
> Allows the user to access **Alerts → Alerts Dashboard** and see the triggered alerts. Also, the user can see the **Alerts** tab in the **Preferences** area | > [Manage]
> 
> Allows the user to view and manage triggered alerts in** Alerts → Alerts Dashboard**. Also, the user can see the **Alerts** tab in the **Preferences** area |
|  | > [Permission]
> 
> *[Update status / priority](https://devodocs.atlassian.net/wiki/spaces/latest/pages/405700870)* | > [View]
> 
> N/A | > [Manage]
> 
> Allows users to update the status and/or priority of triggered alerts. |

## Applications

|  |  |  |
| --- | --- | --- |
| > [Permission]
> 
> *[Applications](https://docs.devo.com/space/latest/95209215/Applications)* | > [View]
> 
> N/A | > [Manage]
> 
> Grant the user access to **Administration → Applications **and the ability to enable or disable applications for the domain |
| > [Permission]
> 
> *[Built-in applications preferences at domain level](https://devodocs.atlassian.net/wiki/spaces/latest/pages/95209215)* | > [View]
> 
> N/A | > [Manage]
> 
> Allows the user to manage application preferences at domain level (only for applications that have built-in preferences) |
| > [Permission]
> 
> *[Tools](https://devodocs.atlassian.net/wiki/spaces/latest/pages/95128085)*<br>> ℹ️ **Inactive by default**
> ℹ️ 
> ℹ️ [Contact Devo](mailto:support@devo.com) if you need to access this feature in your domain. | > [View]
> 
> Grant the user access to the **Tools **area of the application | > [Manage]
> 
> N/A |

## Data

### Aggregations

|  |  |  |
| --- | --- | --- |
| > [Permission]
> 
> *[Domain aggregation tasks](https://devodocs.atlassian.net/wiki/spaces/latest/pages/95205040)* | > [View]
> 
> Grants the user view-only access to the **Aggregations** tab in **Administration → Data Management** | > [Manage]
> 
> Allows the user to edit, run/stop and delete tasks in the **Aggregations** tab of the **Administration → Data Management area** |

### Input data

|  |  |  |
| --- | --- | --- |
| > [Permission]
> 
> *[Data upload](https://devodocs.atlassian.net/wiki/spaces/latest/pages/94658913)* | > [View]
> 
> N/A | > [Manage]
> 
> Makes the** Data upload** area available for users to upload files |
| > [Permission]
> 
> *[Relays](https://devodocs.atlassian.net/wiki/spaces/latest/pages/96469250)** and **[ELBs](https://devodocs.atlassian.net/wiki/spaces/latest/pages/94653692)* | > [View]
> 
> Grants the user view-only access to** Administration → Ingestion** | > [Manage]
> 
> Allows the user to manage and delete relays and ELBs in **Administration → Ingestion** |

### my.app injections

|  |  |  |
| --- | --- | --- |
| > [Permission]
> 
> [Injectio](https://devodocs.atlassian.net/wiki/spaces/latest/pages/95205090)ns | > [View]
> 
> Allows the user to access **Administration → Data Management → Injections** and view injections | > [Manage]
> 
> Allows the user to access **Administration → Data Management → Injections** and view, edit or delete injections. The user can also create new injection tasks after running a search |

### OData

|  |  |  |
| --- | --- | --- |
| > [Permission]
> 
> *[OData](https://devodocs.atlassian.net/wiki/spaces/latest/pages/95205258)* | > [View]
> 
> Allows the user to access the **Tokens** tab in **Administration → Credentials** to view the existing OData feeds and tokens | > [Manage]
> 
> Allows the user to access the **Tokens** tab in **Administration → Credentials** to view, edit and delete OData feeds and tokens. Also, the user can define new OData feeds after running a search |

## Data search

### Finders

|  |  |  |
| --- | --- | --- |
| > [Permission]
> 
> *[Finders](https://devodocs.atlassian.net/wiki/spaces/latest/pages/94764298)*<br>> ℹ️ **Group permission**
> ℹ️ 
> ℹ️ Granting this permission does not imply granting the permissions below.<br>> ℹ️ Admin users can view and manage all queries running in the domain. | > [View]
> 
> Allows users to access the **Data search → Explore your data** area.
> 
> Users with this permission can only access the finder assigned to them in 'Roles management’, which is chosen from the dropdown box that appears after selecting this permission, whether it is the Default finder or a custom one.
> 
> Allows the user to view and manage their own running queries in the **Current queries **tab of the **Administration → Data Management** area. | > [Manage]
> 
> Allows users to access the **Data search - Explore your data** area and use any available finder. Additionally, users with this permission can create, modify, and delete custom finders.
> 
> Allows the user to view and manage their own running queries in the **Current queries **tab of the **Administration → Data Management** area. |
|  | > [Permission]
> 
> *[Lookups](https://devodocs.atlassian.net/wiki/spaces/latest/pages/95204003)*<br>> ℹ️ **Group permission**
> ℹ️ 
> ℹ️ Granting this permission does not imply granting the permissions below. | > [View]
> 
> Allows the user to view upload lookups in the **Lookups **tab of the **Administration → ** **Data Management **area. The user can also use these lookups to apply query operations in a search | > [Manage]
> 
> The user can access the **Lookups **tab in the **Administration → ** **Data** **Management ** area to view, create, edit or delete upload lookups. The user can also use these lookups to apply query operations in a search |
|  | > [Permission]
> 
> *[Query lookups](https://devodocs.atlassian.net/wiki/spaces/latest/pages/95204060)*<br>> ℹ️ **Inactive by default**
> ℹ️ 
> ℹ️ [Contact Devo](mailto:support@devo.com) if you need to access this feature in your domain. | > [View]
> 
> The user can view query lookups in the **Lookups **tab of the **Administration → ** **Data Management **area and use them to apply query operations in a search | > [Manage]
> 
> Allows the user to view, modify, or delete query lookup tables in the **Lookups **tab of the** Administration → ** **Data Management** area. The user can also define new query lookups in the search window after running a search and use them to apply query operations in a search |
| > *Queries* |
|  | > [Permission]
> 
> *[Domain search history](https://devodocs.atlassian.net/wiki/spaces/latest/pages/95205977)* | > [View]
> 
> The user can access the most recently accessed queries in the domain in **Data Search → Query History** | > [Manage]
> 
> N/A |
| > [Permission]
> 
> *[Free text queries](https://devodocs.atlassian.net/wiki/spaces/latest/pages/94764671)* | > [View]
> 
> N/A | > [Manage]
> 
> Allows the user to run free-text queries in **Data Search → Explore Your Data → Free Text Query** |
| > [Permission]
> 
> *[Global searches](https://devodocs.atlassian.net/wiki/spaces/latest/pages/94764610)*<br>> ℹ️ **Inactive by default**
> ℹ️ 
> ℹ️ [Contact Devo](mailto:support@devo.com) if you need to access this feature in your domain. | > N/A | > [Manage]
> 
> Allows the user to perform global searches in **Data Search → Explore Your Data → Global Search** |
| > [Permission]
> 
> *[Query priority](https://devodocs.atlassian.net/wiki/spaces/latest/pages/95206280)*<br>> ℹ️ **Inactive by default**
> ℹ️ 
> ℹ️ [Contact Devo](mailto:support@devo.com) if you need to access this feature in your domain. | > [View]
> 
> N/A | > [Manage]
> 
> Allows the user to set both the default and maximum query priority for each new session. In the drop-down menus below, the user can set the range for the role. |

### Search Window

|  |  |  |
| --- | --- | --- |
| > [Permission]
> 
> *[Custom tables](https://devodocs.atlassian.net/wiki/spaces/latest/pages/95204913)* | > [View]
> 
> N/A | > [Manage]
> 
> Allows the user to create and manage custom tables after running a search |
| > [Permission]
> 
> *[Data search download](https://devodocs.atlassian.net/wiki/spaces/latest/pages/95206208)* | > [View]
> 
> Allows the user to download data from their searches | > [Manage]
> 
> N/A |
| > [Permission]
> 
> *[Log autoparser](https://devodocs.atlassian.net/wiki/spaces/latest/pages/95204500)* | > [View]
> 
> N/A | > [Manage]
> 
> Allows the user to use the log autoparser in my.app tables that are not parsed |
| > [Permission]
> 
> *[Show/hide fields](https://devodocs.atlassian.net/wiki/spaces/latest/pages/95204437)* | > [View]
> 
> N/A | > [Manage]
> 
> Allows the user to edit the default field configuration of a data table and save it as the default one for the domain |
| > [Permission]
> 
> *[Subqueries](https://devodocs.atlassian.net/wiki/spaces/latest/pages/95191366)*<br>> ℹ️ **Inactive by default**
> ℹ️ 
> ℹ️ [Contact Devo](mailto:support@devo.com) if you need to access this feature in your domain. | > [View]
> 
> Allow the user to perform subqueries in their searches | > [Manage]
> 
> N/A |
| > [Permission]
> 
> *[Time control](https://devodocs.atlassian.net/wiki/spaces/latest/pages/95204620)*<br>> ℹ️ **Inactive by default**
> ℹ️ 
> ℹ️ [Contact Devo](mailto:support@devo.com) if you need to access this feature in your domain. | > [View]
> 
> N/A | > [Manage]
> 
> Allows the user to choose the default reference time for tables that contain both creation and event dates |

## DeepTrace features

|  |  |  |
| --- | --- | --- |
| > [Permission]
> 
> *[DeepTrace features](https://devodocs.atlassian.net/wiki/spaces/latest/pages/248840304)* | > [View]
> 
> N/A | > [Manage]
> 
> Allow the user to access **Devo DeepTrace** |

## Exchange

|  |  |  |
| --- | --- | --- |
| > [Permission]
> 
> *[Exchange](https://devodocs.atlassian.net/wiki/spaces/latest/pages/95212575)* | > [View]
> 
> The user can access Exchange to browse available content. | > [Manage]
> 
> The user can access Exchange to install/uninstall content, as well as send content proposals. Note that the corresponding resource permission is also required (Activeboards, Alert configuration, Lookups, Applications, or Synthetic data). |

## Flow

|  |  |  |
| --- | --- | --- |
| > [Permission]
> 
> *[Own flows](https://devodocs.atlassian.net/wiki/spaces/latest/pages/95213164)*<br>> ℹ️ **Group permission**
> ℹ️ 
> ℹ️ Granting this permission does not imply granting the permissions below. | > [View]
> 
> N/A | > [Manage]
> 
> The user can manage own Flows in the domain (create, read, update and delete) |
|  | > [Permission]
> 
> *[Domain flows](https://devodocs.atlassian.net/wiki/spaces/latest/pages/134414516)* | > [View]
> 
> N/A | > [Manage]
> 
> The user can manage all Flows in the domain (create, read, update and delete) |

## Home

|  |  |  |
| --- | --- | --- |
| > [Permission]
> 
> *[First steps](https://devodocs.atlassian.net/wiki/spaces/latest/pages/94762635)* | > [View]
> 
> The user can view the **First steps** window | > [Manage]
> 
> The user can view and deactivate the **First steps** window |
| > [Permission]
> 
> *[Home area](https://devodocs.atlassian.net/wiki/spaces/latest/pages/94762745)*<br>> ℹ️ **Group permission**
> ℹ️ 
> ℹ️ Granting this permission does not imply granting the permissions below. | > [View]
> 
> Makes the **Home** area visible to the user | > [Manage]
> 
> N/A |

## Machine learning

|  |  |  |
| --- | --- | --- |
| > [Permission]
> 
> *[Models](https://devodocs.atlassian.net/wiki/spaces/latest/pages/222035993)*<br>> ℹ️ **Inactive by default**
> ℹ️ 
> ℹ️ [Contact Devo](mailto:support@devo.com) if you need to access this feature in your domain. | > [View]
> 
> Allows the user to view models in the Machine Learning module or through the API | > [Manage]
> 
> Allows the user to create, edit or delete models on the Machine Learning module or through the API |

## Multitenancy administration

> ℹ️ **Only in multitenant domains**
> ℹ️ 
> ℹ️ The permissions in this group only appear for [multitenant](https://devodocs.atlassian.net/wiki/spaces/latest/pages/144474118) domains.

|  |  |  |
| --- | --- | --- |
| > [Permission]
> 
> *[Multitenancy administration](https://devodocs.atlassian.net/wiki/spaces/latest/pages/144474137)* | > [View]
> 
> N/A | > [Manage]
> 
> Allows the user access to the **Overview** tab of the **Multitenancy** area |
|  | > [Permission]
> 
> *[Custom data access](https://devodocs.atlassian.net/wiki/spaces/latest/pages/144474216)* | > [View]
> 
> N/A | > [Manage]
> 
> Allows the user access to the **Custom data access** tab of the **Multitenancy** area
> 
> Allows changes to multitenancy of **queries**, **collector management**, and **triggered alerts**. |

## Notifications

|  |  |  |
| --- | --- | --- |
| > [Permission]
> 
> *[Notifications](https://docs.devo.com/space/latest/95126498/Alerts+and+notifications#What-are-notifications?)* | > [View]
> 
> Makes the **Notifications** area available to the user | > [Manage]
> 
> Allows the user to view and delete notifications |

## Resources

|  |  |  |
| --- | --- | --- |
| > [Permission]
> 
> *[Activeboards](https://devodocs.atlassian.net/wiki/spaces/latest/pages/95207188)* | > [View]
> 
> The user can access the **Activeboards** area and view their own Activeboards | > [Manage]
> 
> The user can access the **Activeboards** area, view, create, edit and delete their own Activeboards |
| > [Permission]
> 
> *[User resources](https://devodocs.atlassian.net/wiki/spaces/latest/pages/94763463)* | > [View]
> 
> N/A | > [Manage]
> 
> Allows the user to view, edit and delete all the domain resources (Activeboards, alerts, lookups...) |

## Security

|  |  |  |
| --- | --- | --- |
| > [Permission]
> 
> *[Aggregation tokens](https://devodocs.atlassian.net/wiki/spaces/latest/pages/94763821)* | > [View]
> 
> Allows the user to view existing Aggregations Task API tokens in the** Tokens** tab of the **Administration → Credentials** area | > [Manage]
> 
> Allows the user to view, create, edit and delete existing Aggregations Task API tokens in the **Tokens** tab of the **Administration → Credentials** area |
| > [Permission]
> 
> *[Alert tokens](https://devodocs.atlassian.net/wiki/spaces/latest/pages/94763821)* | > [View]
> 
> Allows the user to view existing alert tokens in the **Tokens** tab of the **Administration → Credentials** area | > [Manage]
> 
> Allows the user to view, create, edit and delete alert tokens in the** Tokens** tab of the **Administration → Credentials** area |
| > [Permission]
> 
> *[API keys](https://devodocs.atlassian.net/wiki/spaces/latest/pages/94763781)* | > [View]
> 
> N/A | > [Manage]
> 
> Allows the user to view, generate and delete API keys in the **Access Keys** tab of the **Administration → Credentials **area |
| > [PERMISSION] 
> 
> *[API Credentials](https://docs.devo.com/space/latest/94763821/Authentication+tokens)* | > [VIEW] 
> 
> N/A | > [MANAGE] 
> 
> Allows the user to create tokens using the Credentials API and view the **Tokens** tab of the **Administration → Credentials **area |
| > [Permission]
> 
> *[API v2 tokens](https://devodocs.atlassian.net/wiki/spaces/latest/pages/94763821)* | > [View]
> 
> Allows the user to view existing APIv2 tokens in the **Tokens **tab of the **Administration → Credentials** area | > [Manage]
> 
> Allows the user to view, create, edit and delete APIv2 tokens in the** Tokens** tab of the **Administration → Credentials** area |
| > [Permission]
> 
> *[HTTP tokens](https://devodocs.atlassian.net/wiki/spaces/latest/pages/94763821)* | > [View]
> 
> Allows the user to view existing HTTP tokens in the **Tokens** tab of the **Administration → Credentials** area | > [Manage]
> 
> Allows the user to view, create, enable/disable and delete HTTP tokens in the **Tokens** tab of the **Administration → Credentials** area. Take into account this permission will allow to see the list of users and tables in domain. |
| > [Permission]
> 
> *[X.509 certs](https://devodocs.atlassian.net/wiki/spaces/latest/pages/94763741)* | > [View]
> 
> Allows the user to view and download X.509 certificates in **Administration → Credentials → X.509 Certificates** | > [Manage]
> 
> Allows the user to view, generate, download and delete X.509 certificates in** Administration → Credentials → X.509 Certificates** |

## Social

|  |  |  |
| --- | --- | --- |
| > [Permission]
> 
> *[Help - Community](https://docs.devo.com/space/latest/94762662/Navigation+pane#Get-help)* | > [View]
> 
> Makes the Devo Community link visible to the user in the **Help** menu | > [Manage]
> 
> N/A |
| > [Permission]
> 
> *[Help - Contact](https://docs.devo.com/space/latest/94762662/Navigation+pane#Get-help)* | > [View]
> 
> Grants the user access to the **Help → Customer support** menu for contacting Devo customer support | > [Manage]
> 
> N/A |
| > [Permission]
> 
> *[Help - Social links](https://docs.devo.com/space/latest/94762662/Navigation+pane#Get-help)* | > [View]
> 
> Makes the Devo social media link visible to the user in the **Help** menu | > [Manage]
> 
> N/A |

## Synthetic data injections jobs

|  |  |  |
| --- | --- | --- |
| > [Permission]
> 
> *[Synthetic data injection jobs](https://devodocs.atlassian.net/wiki/spaces/latest/pages/517636120)* | > [View]
> 
> N/A | > [Manage]
> 
> The user can launch/stop synthetic data injection jobs from Exchange. |

## Usage analytics

|  |  |  |
| --- | --- | --- |
| > [Permission]
> 
> *[Usage analytics](https://devodocs.atlassian.net/wiki/spaces/latest/pages/431620156)* | > [View]
> 
> Allows the user to view usage analytics | > [Manage]
> 
> N/A |

## User & Roles

|  |  |  |
| --- | --- | --- |
| > [Permission]
> 
> *[Preferences](https://devodocs.atlassian.net/wiki/spaces/latest/pages/94762829)* | > [View]
> 
> N/A | > [Manage]
> 
> Allows the user to edit his own preferences in **Preferences → User Preferences**. For users with the Admin role, this allows them to edit the **Domain Preferences** as well |
| > [Permission]
> 
> *[Roles](https://devodocs.atlassian.net/wiki/spaces/latest/pages/94763386)* | > [View]
> 
> Grants the user view-only access to **Administration → Roles** | > [Manage]
> 
> Allows the user to create, modify and delete roles in **Administration → Roles** |
| > [Permission]
> 
> *[Users](https://devodocs.atlassian.net/wiki/spaces/latest/pages/94763521)*<br>> ℹ️ **Group permission**
> ℹ️ 
> ℹ️ Granting this permission does not imply granting the permissions below. | > [View]
> 
> Grants the user view-only access to **Administration → Users** | > [Manage]
> 
> Allows the user to view, create, modify and delete users in **Administration → Users** |
|  | > [Permission]
> 
> *[Domain activity](https://devodocs.atlassian.net/wiki/spaces/latest/pages/94763634)* | > [View]
> 
> Allows the user to view the list of recent activity in the domain in **Administration → Users → User Activity** | > [Manage]
> 
> N/A |
| > [Permission]
> 
> *[Domain connections](https://devodocs.atlassian.net/wiki/spaces/latest/pages/94763634)* | > [View]
> 
> Allows the user to view the list of last connections in the domain in** Administration → Users → User Logins** | > [Manage]
> 
> N/A |
| > [Permission]
> 
> *[View profile](https://docs.devo.com/space/latest/94762547/Sign+up+and+log+in#Access-your-user-information)* | > [View]
> 
> Allows the user to view their own user profile | > [Manage]
> 
> N/A |